PT-2026-52273 · Linux · Linux

Published

2026-06-25

·

Updated

2026-06-25

·

CVE-2026-53177

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
bnxt en: Fix NULL pointer dereference
PCIe errors detected by a Root Port or Downstream Port cause error recovery services to run on all subordinate devices regardless of administrative state.
The .error detected() callback, bnxt io error detected(), disables and synchronizes IRQs via bnxt disable int sync(), which calls bnxt cp num to irq num() to map completion rings to IRQs using bp->bnapi.
Since bp->bnapi is allocated on NIC open and freed on NIC close, PCIe error recovery on a closed NIC can dereference a NULL pointer.
Check if bp->bnapi is NULL before disabling and synchronizing IRQs.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-53177

Affected Products

Linux