CVE-2026-97982

Summary

In the Linux kernel, the following vulnerability has been resolved:

net: ethernet: cortina: Fix budget accounting

The gmac_rx() function returns the remaining NAPI budget, but its caller treats the return value as the number of packets received. An idle poll therefore reports a full budget and remains scheduled.

Return the number of received packets instead. Preserve the existing free queue refill accounting by adding that count directly; continuing to subtract it from the budget would invert the refill behavior.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux4d5ae32f5e1e13f7f36d6439ec3257993b9f5b88 < 631c47e2e1154f2741c555b91df1b8cb99294c6aaffected
LinuxLinux4d5ae32f5e1e13f7f36d6439ec3257993b9f5b88 < 0ef8eaef5806c84db2334111d6f299c246a592bcaffected
LinuxLinux4d5ae32f5e1e13f7f36d6439ec3257993b9f5b88 < 94e06e12a376710587cfeea481b65e7c49747003affected
LinuxLinux4d5ae32f5e1e13f7f36d6439ec3257993b9f5b88 < a0de06d0da78a3db53de65dfd7452cc6d111f703affected
LinuxLinux4.16affected
LinuxLinux0 < 4.16unaffected
LinuxLinux6.12.111 <= 6.12.*unaffected
LinuxLinux6.18.53 <= 6.18.*unaffected
LinuxLinux7.2.7 <= 7.2.*unaffected
LinuxLinux7.3-rc3 <= *unaffected

Weaknesses

References