Improper control of a resource through its lifetime in Linux kernel - CVE-2026-43466
Published: May 8, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper state management in the mlx5e transmit queue recovery logic when handling a TX error CQE during SQ recovery. A local user can trigger a TX error CQE recovery flow to cause a denial of service.
The issue can desynchronize the DMA FIFO producer and consumer counters, leading to stale DMA addresses being unmapped and a kernel warning.
How to mitigate CVE-2026-43466
Sources
- https://git.kernel.org/stable/c/1633111d69053512d099658d4a05fc736fab36b0
- https://git.kernel.org/stable/c/383b37c04a4827ba60b2bafc1a6cdfd995aed58f
- https://git.kernel.org/stable/c/6eb68ecc5acc3b319986566c595990b8a7265b23
- https://git.kernel.org/stable/c/6f41f7812bfa7f991b732a4b45c5c52fc4be3b4e
- https://git.kernel.org/stable/c/821f85d619f7f22cda7b9d7de89cf5eeb1d11544
- https://git.kernel.org/stable/c/829efcccfa8f69db5dc8332961295587d218cee6
- https://git.kernel.org/stable/c/9c5ee9b981ee050b73fdf3f4a2464d6f1a8e10a8
- https://git.kernel.org/stable/c/ce1b19dd0684eeb68a124c11085bd611260b36d9