staging: octeon: add missing napi_disable in cvm_oct_rx_shutdown
Summary
| CVE | CVE-2026-93278 |
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-09-24 16:17:25 UTC |
| Updated | 2026-09-24 16:17:25 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved:
staging: octeon: add missing napi_disable in cvm_oct_rx_shutdown
cvm_oct_rx_shutdown calls free_irq and netif_napi_del without
disabling the napi instance first. As the free_irq only waits
for completion of hard interrupt handlers, the napi poll
function could still be active. If cvm_oct_remove proceeds to
free the plat structure (which holds the NAPI instances), the
active poll function will access freed memory, resulting in a
use-after-free crash. |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|
| CNA |
Linux |
Linux |
affected 3368c784bcf77124aaf39372e627016c36bd4472 158389d7af04bbf0664d91c2ce31fcc9eeace1eb git |
Not specified |
| CNA |
Linux |
Linux |
affected 3368c784bcf77124aaf39372e627016c36bd4472 c124049c3a7006fd6caf629139a5722610bbffb4 git |
Not specified |
| CNA |
Linux |
Linux |
affected 3368c784bcf77124aaf39372e627016c36bd4472 98f9036b2254c928cb44da0c77dba38f66f7d8f1 git |
Not specified |
| CNA |
Linux |
Linux |
affected 3368c784bcf77124aaf39372e627016c36bd4472 b38fbd68cc36b4f478a1e3cfc169b8616ae1337d git |
Not specified |
| CNA |
Linux |
Linux |
affected 3368c784bcf77124aaf39372e627016c36bd4472 89f9f433271fad9351de6a3c713b45b2cfb23e4a git |
Not specified |
| CNA |
Linux |
Linux |
affected 3368c784bcf77124aaf39372e627016c36bd4472 b2243ffaac14cc3639b5b32a371aac37f96ee554 git |
Not specified |
| CNA |
Linux |
Linux |
affected 3368c784bcf77124aaf39372e627016c36bd4472 c0a9a8586a63fda49e61a6b83360feac2a60d898 git |
Not specified |
| CNA |
Linux |
Linux |
affected 2.6.34 |
Not specified |
| CNA |
Linux |
Linux |
unaffected 2.6.34 semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 5.15.221 5.15.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.1.188 6.1.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.6.157 6.6.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.12.110 6.12.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.18.52 6.18.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.2.6 7.2.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.3-rc1 * original_commit_for_fix |
Not specified |
References
| Reference | Source | Link | Tags |
|---|
| git.kernel.org/stable/c/89f9f433271fad9351de6a3c713b45b2cfb23e4a |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/158389d7af04bbf0664d91c2ce31fcc9eeace1eb |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/c0a9a8586a63fda49e61a6b83360feac2a60d898 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/b2243ffaac14cc3639b5b32a371aac37f96ee554 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/98f9036b2254c928cb44da0c77dba38f66f7d8f1 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/c124049c3a7006fd6caf629139a5722610bbffb4 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/b38fbd68cc36b4f478a1e3cfc169b8616ae1337d |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.