CVE-2026-46249

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
03/06/2026
Last modified:
22/07/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> octeontx2-af: Fix PF driver crash with kexec kernel booting<br /> <br /> During a kexec reboot the hardware is not power-cycled, so AF state from<br /> the old kernel can persist into the new kernel. When AF and PF drivers<br /> are built as modules, the PF driver may probe before AF reinitializes<br /> the hardware.<br /> <br /> The PF driver treats the RVUM block revision as an indication that AF<br /> initialization is complete. If this value is left uncleared at shutdown,<br /> PF may incorrectly assume AF is ready and access stale hardware state,<br /> leading to a crash.<br /> <br /> Clear the RVUM block revision during AF shutdown to avoid PF<br /> mis-detecting AF readiness after kexec.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 4.20 (including) 5.10.252 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.11 (including) 5.15.202 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.16 (including) 6.1.165 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2 (including) 6.6.128 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.7 (including) 6.12.75 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.13 (including) 6.18.14 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.19 (including) 6.19.4 (excluding)