-

CVE-2026-97571

bnxt_en: Propagate TPA buffer allocation failures in bnxt_queue_mem_alloc()

In the Linux kernel, the following vulnerability has been resolved:

bnxt_en: Propagate TPA buffer allocation failures in bnxt_queue_mem_alloc()

bnxt_alloc_one_tpa_info_data() returns -ENOMEM as soon as one allocation
fails. This leaves the remaining rxr->rx_tpa[] entries zeroed.

bnxt_queue_mem_alloc() discards that return value, so the partially
initialized ring is installed by bnxt_queue_start().

Since the agg_id is picked by the hardware and bnxt_alloc_agg_idx maps
it to a SW index in rxr->rx_tpa[], it is possible that an uninitialized
slot can be chosen which would hand a zero DMA address to the device.

Fix this by checking the return value of bnxt_alloc_one_tpa_info_data
and unwinding, freeing the ring buffers.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 0997443906b96a051011f220a61e6dce4602ec54
Version < d7db2e4953e4626339fd0075564a3e447650d37b
Status affected
Version bd649c5cc958169b8a8a3e77ea926d92d472b02a
Version < c8050386a2209b2a474c1eb4bd1574dc19129bfb
Status affected
Version bd649c5cc958169b8a8a3e77ea926d92d472b02a
Version < 37e08dc821a57fe0592c917486b638caa888b46d
Status affected
Version bd649c5cc958169b8a8a3e77ea926d92d472b02a
Version < b814dfbfeb0a68c9a52073f2caa05a2d5247a329
Status affected
Version 6.12.20
Version < 6.12.112
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.13
Status affected
Version 0
Version < 6.13
Status unaffected
Version <= 6.12.*
Version 6.12.112
Status unaffected
Version <= 6.18.*
Version 6.18.53
Status unaffected
Version <= 7.2.*
Version 7.2.7
Status unaffected
Version <= *
Version 7.3-rc3
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.086
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/c8050386a2209b2a474c1eb4bd1574dc19129bfb
https://git.kernel.org/stable/c/37e08dc821a57fe0592c917486b638caa888b46d
https://git.kernel.org/stable/c/b814dfbfeb0a68c9a52073f2caa05a2d5247a329
https://git.kernel.org/stable/c/d7db2e4953e4626339fd0075564a3e447650d37b