๐Ÿ” CVE Alert

CVE-2026-63857

UNKNOWN 0.0

net: airoha: Do not read uninitialized fragment address in airoha_dev_xmit()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: net: airoha: Do not read uninitialized fragment address in airoha_dev_xmit() The transmit loop in airoha_dev_xmit() reads fragment address and length during its final iteration, when the loop index equals skb_shinfo(skb)->nr_frags, at which point the fragment data is uninitialized. While these values are never consumed, the read itself is unsafe and may trigger a page fault. Fix this by avoiding the fragment read on the last iteration. Additionally, move the skb pointer from the first to the last used packet descriptor, so that airoha_qdma_tx_napi_poll() defers freeing the skb until the final descriptor is processed.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 19, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
23020f04932701d5c8363e60756f12b43b8ed752 < f670fa4b19ceddc6d215dda4997888ccba9bbc61 23020f04932701d5c8363e60756f12b43b8ed752 < d78c8ab7bd84952e053d0c622b7fc1b4ad8a19a3 23020f04932701d5c8363e60756f12b43b8ed752 < bde34e84edc8b5571fbde7e941e175a4293ee1eb
Linux / Linux
6.11

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/f670fa4b19ceddc6d215dda4997888ccba9bbc61 git.kernel.org: https://git.kernel.org/stable/c/d78c8ab7bd84952e053d0c622b7fc1b4ad8a19a3 git.kernel.org: https://git.kernel.org/stable/c/bde34e84edc8b5571fbde7e941e175a4293ee1eb