CVE-2026-43296
Published: May 8, 2026
Modified: May 11, 2026
CVSS v3.1
7.5
Description
In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: Workaround SQM/PSE stalls by disabling sticky NIX SQ manager sticky mode is known to cause stalls when multiple SQs share an SMQ and transmit concurrently. Additionally, PSE may deadlock on transitions between sticky and non-sticky transmissions. There is also a credit drop issue observed when certain condition clocks are gated. work around these hardware errata by: - Disabling SQM sticky operation: - Clear TM6 (bit 15) - Clear TM11 (bit 14) - Disabling sticky → non-sticky transition path that can deadlock PSE: - Clear TM5 (bit 23) - Preventing credit drops by keeping the control-flow clock enabled: - Set TM9 (bit 21) These changes are applied via NIX_AF_SQM_DBG_CTL_STATUS. With this configuration the SQM/PSE maintain forward progress under load without credit loss, at the cost of disabling sticky optimizations.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 - < 9a3fd301329474f449e75f86d8a4f6b9c603fd6caffected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 - < d0b3c8a80336029d9356f429151eb27922d80a3caffected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 - < 36cc5a5e0178d5fb79e04173b8aa623b0108819aaffected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 - < d9b549b6951ba178ec14339a031cae65f4e43fe1affected 5d9b976d4480dc0dcfa3719b645636d2f0f9f156 - < cec2ceb35ce7bc874c43812bb39200d6cf691b87+3 more versions |
Linux | Linux | affected 5.5unaffected 0 - < 5.5unaffected 5.10.252 - <= 5.10.*unaffected 5.15.202 - <= 5.15.*unaffected 6.1.165 - <= 6.1.*+5 more versions |
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now