CVE-2026-97981
⚪ Do wiadomości
Błąd w jądrze Linuxa pozwala na nieprawidłowe zarządzanie budżetem NAPI, co może prowadzić do przeciążenia.
CVSS
0.0
EPSS
0.2%
Exploit
none
Vendor
Opis źródłowy (NVD)
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: cortina: Count dropped frames as NAPI work The RX loop only consumes budget when it successfully delivers a frame. Error paths keep consuming descriptors without reducing the budget, so a stream of bad frames can process the entire receive ring in one poll. Move the budget accounting to a common end-of-frame path. This counts each completed frame as NAPI work whether it was delivered or dropped, matching the behavior of the vendor driver.
brak
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 0.0 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.2% |
| Opublikowano (NVD) | 2026-09-25 11:17:26 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-03 11:18:22 UTC |
Referencje
- https://git.kernel.org/stable/c/27b5753077d1cfda5fe201d2ba602de76a9a09b1 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/5754e0c0758805096ecfeaf4c1b146ad51ed246f (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/58140f1cebb776d174dc6ff41c15401654a5b1ea (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/620b7184808b25cf58268856f892b9ba83c181fd (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/9620e2ce9b5998ebbf157241f296f8ddb92285c2 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/b856c552f556bc0341c1dbe0bf88e630fd1dc4b7 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/cceb6cd7f0e5ed2944a9ca22443d7b9da82f60ab (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/e858b9b1ea3cbbc353189d07dec40dc16967e290 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)