crypto: marvell/octeontx - fix DMA cleanup using wrong loop index
Summary
| CVE | CVE-2026-74280 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-08-15 06:22:27 UTC |
| Updated | 2026-08-17 06:19:21 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: crypto: marvell/octeontx - fix DMA cleanup using wrong loop index The sg_cleanup path used list[i] instead of list[j] when unmapping DMA buffers, leaking successfully mapped entries and repeatedly unmapping the failed one. |
Risk And Classification
Primary CVSS: v3.1 10 CRITICAL from 416baaa9-dc9f-4396-8d5f-8c081fb06d67
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS: 0.007040000 probability, percentile 0.502740000 (date 2026-08-17)
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | Secondary | 10 | CRITICAL | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H |
| 3.1 | CNA | DECLARED | 10 | CRITICAL | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H |
CVSS v3.1 Breakdown
Attack Vector
NetworkAttack Complexity
LowPrivileges Required
NoneUser Interaction
NoneScope
ChangedConfidentiality
HighIntegrity
HighAvailability
HighCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected 10b4f09491bfeb0b298cb2f49df585510ee6189a 97f150ba3e372256eabb93bd80c2cf3740077fb5 git | Not specified |
| CNA | Linux | Linux | affected 10b4f09491bfeb0b298cb2f49df585510ee6189a 8a0db9fad3c97e6447a92417cb95d7c55eaa9530 git | Not specified |
| CNA | Linux | Linux | affected 10b4f09491bfeb0b298cb2f49df585510ee6189a 8d301e5a51173ba56ce4f632a2a33bf6b14b0fcf git | Not specified |
| CNA | Linux | Linux | affected 10b4f09491bfeb0b298cb2f49df585510ee6189a ed374dbc70c10c4a864414b3d9c257faec8fd485 git | Not specified |
| CNA | Linux | Linux | affected 10b4f09491bfeb0b298cb2f49df585510ee6189a 6c721a3e43344f8560ee4ef506fc1f72b4646dcd git | Not specified |
| CNA | Linux | Linux | affected 10b4f09491bfeb0b298cb2f49df585510ee6189a 5f99a396f706afc749448659d1565991330e4f71 git | Not specified |
| CNA | Linux | Linux | affected 10b4f09491bfeb0b298cb2f49df585510ee6189a acff30cfc0d72465b51b0bfdf019f1cb54e15314 git | Not specified |
| CNA | Linux | Linux | affected 10b4f09491bfeb0b298cb2f49df585510ee6189a 7891c64c0520519782470ba29bac8a5761e295d8 git | Not specified |
| CNA | Linux | Linux | affected 5.7 | Not specified |
| CNA | Linux | Linux | unaffected 5.7 semver | Not specified |
| CNA | Linux | Linux | unaffected 5.10.261 5.10.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.15.212 5.15.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1.178 6.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.6.145 6.6.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.12.97 6.12.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.18.40 6.18.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.1.5 7.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.2 * original_commit_for_fix | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| git.kernel.org/stable/c/acff30cfc0d72465b51b0bfdf019f1cb54e15314 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/8a0db9fad3c97e6447a92417cb95d7c55eaa9530 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/7891c64c0520519782470ba29bac8a5761e295d8 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/8d301e5a51173ba56ce4f632a2a33bf6b14b0fcf | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/6c721a3e43344f8560ee4ef506fc1f72b4646dcd | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/5f99a396f706afc749448659d1565991330e4f71 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/ed374dbc70c10c4a864414b3d9c257faec8fd485 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/97f150ba3e372256eabb93bd80c2cf3740077fb5 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.