<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Net-Sched on ZX Cloud Security</title><link>https://zxcloudsecurity.co.uk/tags/net-sched/</link><description>Recent content in Net-Sched on ZX Cloud Security</description><generator>Hugo</generator><language>en-GB</language><lastBuildDate>Fri, 20 Jun 2025 08:43:41 +0000</lastBuildDate><atom:link href="https://zxcloudsecurity.co.uk/tags/net-sched/index.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-46331: Linux net/sched Pedit Page Cache Bug</title><link>https://zxcloudsecurity.co.uk/posts/azure-linux-kernel-net-sched-pedit-page-cache-corruption-cve-2026-46331/</link><pubDate>Sat, 20 Jun 2026 08:43:41 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/azure-linux-kernel-net-sched-pedit-page-cache-corruption-cve-2026-46331/</guid><description>CVE-2026-46331 is a Linux kernel net/sched pedit flaw causing page cache corruption. Azure Linux VM and AKS users should patch promptly.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-46331">Microsoft Security Response Center</a></p>
<hr>
<p>CVE-2026-46331 is a Linux kernel vulnerability in the network packet scheduler (net/sched) subsystem, specifically in the &lsquo;pedit&rsquo; action, where an incomplete copy-on-write operation can corrupt the page cache. This can lead to memory corruption affecting workloads sharing kernel resources. The issue is relevant to Azure environments where Linux-based virtual machines or container workloads run on shared kernel infrastructure.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Ensure all Linux-based Azure VMs and AKS node pools are running patched kernel versions as soon as Microsoft and upstream distributions release fixes; prioritise workloads with network policy enforcement or traffic shaping configurations that use tc/pedit rules, as these are most directly exposed.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-46331">CVE-2026-46331 net/sched: fix pedit partial COW leading to page cache corruption</a></p>
]]></content:encoded></item></channel></rss>