PT-2026-36451 · Linux · Linux Kernel
Published
2026-03-29
·
Updated
2026-05-02
·
CVE-2026-43034
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the
bnxt hwrm func backing store qcaps v2() function where resp->type from a firmware response is stored in ctxm->type. This value is subsequently used to index fixed backing-store metadata arrays, including ctx arr[] and bnxt bstore to trace[]. To resolve this, ctxm->type should be set from the current loop variable rather than relying on resp->type.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel