Improper control of a resource through its lifetime in Linux kernel - CVE-2026-43219
Published: May 7, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper state management in cpsw_unregister_ports() when handling a failed register_netdev() call for the first MAC in cpsw_register_ports(). A local user can trigger an error during network device registration to cause a denial of service.
Affected software
Debian Linux
linux (Debian package)
How to mitigate CVE-2026-43219
linux (Debian package) - update to 6.12.94-1