CVE Database
/

CVE-2026-43296

Back to search

CVE-2026-43296

Published: May 8, 2026

Modified: May 11, 2026

PUBLISHED

CVSS v3.1

7.5

HIGH

Description

In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Workaround SQM/PSE stalls by disabling sticky NIX SQ manager sticky mode is known to cause stalls when multiple SQs share an SMQ and transmit concurrently. Additionally, PSE may deadlock on transitions between sticky and non-sticky transmissions. There is also a credit drop issue observed when certain condition clocks are gated. work around these hardware errata by: - Disabling SQM sticky operation: - Clear TM6 (bit 15) - Clear TM11 (bit 14) - Disabling sticky → non-sticky transition path that can deadlock PSE: - Clear TM5 (bit 23) - Preventing credit drops by keeping the control-flow clock enabled: - Set TM9 (bit 21) These changes are applied via NIX_AF_SQM_DBG_CTL_STATUS. With this configuration the SQM/PSE maintain forward progress under load without credit loss, at the cost of disabling sticky optimizations.

VendorProductVersions

Linux

Linux

affected
5d9b976d4480dc0dcfa3719b645636d2f0f9f156 - < 9a3fd301329474f449e75f86d8a4f6b9c603fd6c
affected
5d9b976d4480dc0dcfa3719b645636d2f0f9f156 - < d0b3c8a80336029d9356f429151eb27922d80a3c
affected
5d9b976d4480dc0dcfa3719b645636d2f0f9f156 - < 36cc5a5e0178d5fb79e04173b8aa623b0108819a
affected
5d9b976d4480dc0dcfa3719b645636d2f0f9f156 - < d9b549b6951ba178ec14339a031cae65f4e43fe1
affected
5d9b976d4480dc0dcfa3719b645636d2f0f9f156 - < cec2ceb35ce7bc874c43812bb39200d6cf691b87

+3 more versions

Linux

Linux

affected
5.5
unaffected
0 - < 5.5
unaffected
5.10.252 - <= 5.10.*
unaffected
5.15.202 - <= 5.15.*
unaffected
6.1.165 - <= 6.1.*

+5 more versions

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

None

Integrity

None

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now