octeontx2-af: Workaround SQM/PSE stalls by disabling sticky
Summary
| CVE | CVE-2026-43296 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-05-08 14:16:36 UTC |
| Updated | 2026-05-15 15:03:44 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Workaround SQM/PSE stalls by disabling sticky NIX SQ manager sticky mode is known to cause stalls when multiple SQs share an SMQ and transmit concurrently. Additionally, PSE may deadlock on transitions between sticky and non-sticky transmissions. There is also a credit drop issue observed when certain condition clocks are gated. work around these hardware errata by: - Disabling SQM sticky operation: - Clear TM6 (bit 15) - Clear TM11 (bit 14) - Disabling sticky → non-sticky transition path that can deadlock PSE: - Clear TM5 (bit 23) - Preventing credit drops by keeping the control-flow clock enabled: - Set TM9 (bit 21) These changes are applied via NIX_AF_SQM_DBG_CTL_STATUS. With this configuration the SQM/PSE maintain forward progress under load without credit loss, at the cost of disabling sticky optimizations. |
Risk And Classification
Primary CVSS: v3.1 7.5 HIGH from 416baaa9-dc9f-4396-8d5f-8c081fb06d67
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS: 0.000520000 probability, percentile 0.161240000 (date 2026-05-12)
Problem Types: CWE-667
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | Secondary | 7.5 | HIGH | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
| 3.1 | CNA | DECLARED | 7.5 | HIGH | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
CVSS v3.1 Breakdown
Attack Vector
NetworkAttack Complexity
LowPrivileges Required
NoneUser Interaction
NoneScope
UnchangedConfidentiality
NoneIntegrity
NoneAvailability
HighCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Linux | Linux Kernel | All | All | All | All |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 9a3fd301329474f449e75f86d8a4f6b9c603fd6c git | Not specified |
| CNA | Linux | Linux | affected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 d0b3c8a80336029d9356f429151eb27922d80a3c git | Not specified |
| CNA | Linux | Linux | affected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 36cc5a5e0178d5fb79e04173b8aa623b0108819a git | Not specified |
| CNA | Linux | Linux | affected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 d9b549b6951ba178ec14339a031cae65f4e43fe1 git | Not specified |
| CNA | Linux | Linux | affected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 cec2ceb35ce7bc874c43812bb39200d6cf691b87 git | Not specified |
| CNA | Linux | Linux | affected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 8052d0587fb14b85539c3a14a226586c0c3d6b4c git | Not specified |
| CNA | Linux | Linux | affected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 b7eba260a34e854e2487b8363c11976f082df00d git | Not specified |
| CNA | Linux | Linux | affected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 70e9a5760abfb6338d63994d4de6b0778ec795d6 git | Not specified |
| CNA | Linux | Linux | affected 5.5 | Not specified |
| CNA | Linux | Linux | unaffected 5.5 semver | Not specified |
| CNA | Linux | Linux | unaffected 5.10.252 5.10.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.15.202 5.15.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1.165 6.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.6.128 6.6.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.12.75 6.12.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.18.16 6.18.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.19.6 6.19.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.0 * original_commit_for_fix | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| git.kernel.org/stable/c/8052d0587fb14b85539c3a14a226586c0c3d6b4c | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/cec2ceb35ce7bc874c43812bb39200d6cf691b87 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/36cc5a5e0178d5fb79e04173b8aa623b0108819a | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/b7eba260a34e854e2487b8363c11976f082df00d | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/9a3fd301329474f449e75f86d8a4f6b9c603fd6c | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/d0b3c8a80336029d9356f429151eb27922d80a3c | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/d9b549b6951ba178ec14339a031cae65f4e43fe1 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| git.kernel.org/stable/c/70e9a5760abfb6338d63994d4de6b0778ec795d6 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | Patch |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.