Microsoft published security advisories for two Linux kernel vulnerabilities tracked as CVE-2026-23277 and CVE-2026-23334. The first issue affects the networking stack, where net/sched: teql received a fix for a NULL pointer dereference in iptunnel_xmit during TEQL slave transmission, indicating a kernel-level flaw that could lead to instability or denial-of-service conditions.
A second advisory, CVE-2026-23334, affects the CAN USB driver path, with a fix in can: usb: f81604 to properly handle short interrupt URB messages. Together, the disclosures highlight separate low-level Linux kernel defects in networking and device-driver components that require patching through vendor security updates.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
Microsoft's Security Update Guide published an advisory for CVE-2026-23334, covering a fix for improper handling of short interrupt URB messages in the can: usb: f81604 component.
Microsoft's Security Update Guide published an advisory for CVE-2026-23277, describing a fix for a NULL pointer dereference in iptunnel_xmit on TEQL slave transmit handling.
2 references tracked. Mallory keeps watching after this page renders.
msrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.