Deadlock in Linux kernel - CVE-2026-74745
Published: August 27, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a deadlock in the bnxt IRQ affinity notifier handling in the Broadcom bnxt network driver when processing IRQ affinity notifier updates during device operation. A remote attacker can trigger IRQ affinity updates to cause a denial of service.
The issue affects the Linux kernel bnxt driver path that restarts RX queues from the notifier callback.