udp gso conntrack

  1. CVE-2026-45859: Linux nfnetlink_queue UDP GSO Drops in NFQUEUE/Conntrack

    CVE-2026-45859, published by NVD on May 27, 2026, tracks a Linux kernel netfilter nfnetlink_queue regression in which certain UDP GSO packets tied to unconfirmed conntrack entries could be dropped instead of queued for userspace inspection. That sentence sounds narrow because the bug is narrow...