CVE-2026-68440

Summary

In the Linux kernel, the following vulnerability has been resolved:

net: txgbe: fix heap overflow when reading module EEPROM

txgbe_read_eeprom_hostif() always copies round_up(length, 4) bytes into the caller buffer, which ethtool allocates with exactly 'length' bytes. A non-4-aligned length therefore causes an out-of-bounds write. Copy only the remaining bytes on the final dword instead.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux9b97b6b5635b3de18debd07a3adcf25198ec8299 < febcced6958158e7e90a55a8567b3f5c3639c0b9affected
LinuxLinux9b97b6b5635b3de18debd07a3adcf25198ec8299 < 6a905a71fd43ce8b45f05044b11491337f232c9daffected
LinuxLinux6.19affected
LinuxLinux0 < 6.19unaffected
LinuxLinux7.1.6 <= 7.1.*unaffected
LinuxLinux7.2-rc5 <= *unaffected

Weaknesses

References