CVE-2026-98304

Summary

In the Linux kernel, the following vulnerability has been resolved:

net: bcmgenet: restore the hardware filters on open

bcmgenet_hfb_init() runs INIT_LIST_HEAD() on priv->rxnfc_list, which drops every rule off the list, and bcmgenet_open() calls it on each ifup. Every rule the user configured is silently lost:

ethtool -N eth0 flow-type ether dst $MAC action 0

Added rule with ID 0

ethtool -n eth0 | grep -c Filter:

1

ip link set eth0 down && ip link set eth0 up

ethtool -n eth0 | grep -c Filter:

0

Initialise the lists once at probe and restore the rules on open, as bcmgenet_resume() already does.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux3e370952287c55e5fd240cb8bb41ef8acff8829d < 56db7ec462d6a2b886e299ad835109c089606969affected
LinuxLinux3e370952287c55e5fd240cb8bb41ef8acff8829d < 906140955c8debde65afe12e594e04c49a61b0d9affected
LinuxLinux3e370952287c55e5fd240cb8bb41ef8acff8829d < 23ca4ddc4fce2c233a49e9fd34d4b5b02bd7324eaffected
LinuxLinux5.8affected
LinuxLinux0 < 5.8unaffected
LinuxLinux6.18.54 <= 6.18.*unaffected
LinuxLinux7.2.8 <= 7.2.*unaffected
LinuxLinux7.3-rc4 <= *unaffected

Weaknesses

References