PT-2026-39127 · Linux · Linux Kernel

Published

2026-05-08

·

Updated

2026-05-26

·

CVE-2026-43466

CVSS v3.1

8.2

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the net/mlx5e component where a DMA FIFO desynchronization occurs during error CQE SQ recovery. When a TX error CQE triggers a recovery flow, the function mlx5e reset txqsq cc pc() resets the dma fifo cc variable to 0 but fails to reset dma fifo pc. This causes the DMA FIFO producer and consumer to become desynchronized. Consequently, the producer pushes new DMA entries at the old dma fifo pc position while the consumer reads from position 0, leading to the unmapping of stale DMA addresses from before the recovery.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2026-43466

Affected Products

Linux Kernel