PT-2026-2502 · Linux+2 · Linux Kernel+2

Published

2025-12-02

·

Updated

2026-06-16

·

CVE-2025-68770

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel’s bnxt en network driver related to the handling of XDP TX packets. Specifically, the clearing of event flags within the bnxt rx xdp() function is incorrect, potentially leading to an infinite loop within the NAPI subsystem. This can occur when processing XDP TX actions, particularly in multi-buffer scenarios. If the TX ring lacks available space, the driver may not properly signal the TX doorbell, causing the RX ring to become empty and resulting in packet loss. The issue stems from incorrect flag management, where BNXT TX EVENT and BNXT AGG EVENT flags are not consistently set or cleared, leading to a state where the driver incorrectly perceives pending XDP TX packets. The bnxt poll work() and bnxt rx pkt() functions are involved in the problematic code path.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-00735
CVE-2025-68770
OPENSUSE-SU-2026:20287-1
SUSE-SU-2026:0447-1
SUSE-SU-2026:0472-1
SUSE-SU-2026:0587-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20555-1
SUSE-SU-2026:20599-1
SUSE-SU-2026:20615-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1
USN-8177-1
USN-8177-2
USN-8179-1
USN-8179-2
USN-8179-3
USN-8179-4
USN-8183-1
USN-8183-2
USN-8184-1
USN-8185-1
USN-8185-2
USN-8203-1
USN-8204-1
USN-8245-1
USN-8257-1
USN-8258-1
USN-8260-1
USN-8261-1
USN-8265-1
USN-8440-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu