5.5
CVE-2026-98051
- EPSS 0.17%
- Veröffentlicht 25.09.2026 10:23:59
- Zuletzt bearbeitet 06.10.2026 12:59:12
- Erkennungen
net: bcmasp: fix tx_spb_ring_full() checking same slot cnt times
In the Linux kernel, the following vulnerability has been resolved: net: bcmasp: fix tx_spb_ring_full() checking same slot cnt times The loop initialised next_index from intf->tx_spb_index on every iteration, so incr_ring() always produced the same result and only one slot was ever tested. Move the initialisation before the loop so each iteration advances next_index and the function correctly checks that cnt consecutive descriptor slots are available before allowing a new transmission.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 6.6 < 6.6.158
Linux ≫ Linux Kernel Version >= 6.7 < 6.12.111
Linux ≫ Linux Kernel Version >= 6.13 < 6.18.53
Linux ≫ Linux Kernel Version >= 6.19 < 7.2.7
Linux ≫ Linux Kernel Version 7.3 Update rc1
Linux ≫ Linux Kernel Version 7.3 Update rc2
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.17% | 0.054 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-670 Always-Incorrect Control Flow Implementation
The code contains a control flow path that does not reflect the algorithm that the path is intended to implement, leading to incorrect behavior any time this path is navigated.
https://git.kernel.org/stable/c/f7f7a16dd46ace4e221336a184c7806f7de19547
https://git.kernel.org/stable/c/a8bddab54aa68b407f12294acb05bd552fb6a492
https://git.kernel.org/stable/c/5df7ecd302488287665ab9767bacba7ed7e2842f
https://git.kernel.org/stable/c/0c5cf62e72d7a666ee4da757e122dc1600df1ecc
https://git.kernel.org/stable/c/990df1ba4d0805d1e7f6148c364febd2ab618766