PT-2026-30036 · Linux · Linux Kernel

Experimental Ai Code Review Agent

·

Published

2026-04-03

·

Updated

2026-04-14

·

CVE-2026-23422

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw within the dpaa2-switch component that can lead to an interrupt storm. This occurs when an invalid if id is received in the IRQ handler. A range check was introduced in commit 31a7a0bbeb00 to prevent out-of-bounds access, but the interrupt status was not cleared when an invalid if id was detected, resulting in the storm. The issue was discovered by an AI code review agent.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2026-23422
ECHO-32E7-1B33-685B

Affected Products

Linux Kernel