-

CVE-2026-98028

eth: nfp: drop the replaced rule from the list when reprogramming fails

In the Linux kernel, the following vulnerability has been resolved:

eth: nfp: drop the replaced rule from the list when reprogramming fails

nfp_net_fs_add() replaces an existing rule by deleting it from the
hardware, decrementing nn->fs.count and programming the new one.  If
nfp_net_fs_add_hw() fails the old entry stays on nn->fs.list - only the
success path reaches list_replace() - so the list is one longer than
nn->fs.count, and it advertises a rule whose hardware entry has already
been torn down.

nn->fs.count is what ETHTOOL_GRXCLSRLCNT reports, so userspace then sizes
its buffer one entry short of what the GRXCLSRLALL walk wants to write.
That used to overwrite one u32 past the allocation; since the walk is
bounded it is a permanent -EMSGSIZE instead, as nothing ever resyncs the
counter.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 9eb03bb1c035ff6e2c3a34046419446588253dda
Version < 603b70093f729f52a37544b48679903cad834856
Status affected
Version 9eb03bb1c035ff6e2c3a34046419446588253dda
Version < edaec279f59f801a05b751df475ed71a0a68c88a
Status affected
Version 9eb03bb1c035ff6e2c3a34046419446588253dda
Version < 552e528a7d85cbe088b2ae4f78194713975b46cf
Status affected
Version 9eb03bb1c035ff6e2c3a34046419446588253dda
Version < 108bb2142e3a12c9ad625ad662973127a113ddc6
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.8
Status affected
Version 0
Version < 6.8
Status unaffected
Version <= 6.12.*
Version 6.12.111
Status unaffected
Version <= 6.18.*
Version 6.18.53
Status unaffected
Version <= 7.2.*
Version 7.2.7
Status unaffected
Version <= *
Version 7.3-rc3
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.054
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/603b70093f729f52a37544b48679903cad834856
https://git.kernel.org/stable/c/edaec279f59f801a05b751df475ed71a0a68c88a
https://git.kernel.org/stable/c/552e528a7d85cbe088b2ae4f78194713975b46cf
https://git.kernel.org/stable/c/108bb2142e3a12c9ad625ad662973127a113ddc6