bnxt_en: Disable EOP for TPA on all chips to prevent data corruption

Summary

CVECVE-2026-74697
StatePUBLISHED
AssignerLinux
Source PriorityCVE Program / NVD first with legacy fallback
Published2026-08-22 16:16:44 UTC
Updated2026-08-22 16:16:44 UTC
DescriptionIn the Linux kernel, the following vulnerability has been resolved: bnxt_en: Disable EOP for TPA on all chips to prevent data corruption EOP (End of frame padding) on the AGG ring may cause overlapping of zero padding at the end of one segment with the next segment's data. If Relaxed Ordering (RO) is enabled, the zero padding may overwrite valid data in the next segment and corrupt the data. Older chips (P5 and older) do not automatically disable RO when EOP is enabled. On some ARM systems, data corruption was reported on 57508 (P5) chips with RO enabled. Always disable EOP on all chips on the AGG rings when TPA is enabled to fix the data corruption.

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Linux Linux affected bfcd8d791ec18496772d117774398e336917f56e 68c181af7cd1ca9cbf29acd95911073bfd3c6397 git Not specified
CNA Linux Linux affected bfcd8d791ec18496772d117774398e336917f56e 7aee22a35978b44784612c156e358e375ddf5d16 git Not specified
CNA Linux Linux affected bfcd8d791ec18496772d117774398e336917f56e 410da4428b1f47bf9a84bdc0bcaa089d73ba2048 git Not specified
CNA Linux Linux affected bfcd8d791ec18496772d117774398e336917f56e b61c4911204a0a2f900e538d64ceb608f6c9614d git Not specified
CNA Linux Linux affected bfcd8d791ec18496772d117774398e336917f56e aab3b5f4d8ec8598606ee011e219ef824ae25ca0 git Not specified
CNA Linux Linux affected bfcd8d791ec18496772d117774398e336917f56e c1962ab4645a914a91ff492735881150ddc8a79e git Not specified
CNA Linux Linux affected bfcd8d791ec18496772d117774398e336917f56e c3faf548a00f4c17100cc9204746975fa46a73b9 git Not specified
CNA Linux Linux affected 5.4 Not specified
CNA Linux Linux unaffected 5.4 semver Not specified
CNA Linux Linux unaffected 5.10.265 5.10.* semver Not specified
CNA Linux Linux unaffected 5.15.216 5.15.* semver Not specified
CNA Linux Linux unaffected 6.1.183 6.1.* semver Not specified
CNA Linux Linux unaffected 6.6.152 6.6.* semver Not specified
CNA Linux Linux unaffected 6.18.45 6.18.* semver Not specified
CNA Linux Linux unaffected 7.1.9 7.1.* semver Not specified
CNA Linux Linux unaffected 7.2 * original_commit_for_fix Not specified

References

ReferenceSourceLinkTags
git.kernel.org/stable/c/c1962ab4645a914a91ff492735881150ddc8a79e 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/7aee22a35978b44784612c156e358e375ddf5d16 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/aab3b5f4d8ec8598606ee011e219ef824ae25ca0 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/68c181af7cd1ca9cbf29acd95911073bfd3c6397 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/b61c4911204a0a2f900e538d64ceb608f6c9614d 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/c3faf548a00f4c17100cc9204746975fa46a73b9 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/410da4428b1f47bf9a84bdc0bcaa089d73ba2048 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report