cbcvebase.
CVE-2025-40330
published 2025-12-09

CVE-2025-40330: In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Shutdown FW DMA in bnxt_shutdown() The netif_close() call in bnxt_shutdown() only…

PriorityP421high7.5
EPSS
0.21%
11.4th percentile
In the Linux kernel, the following vulnerability has been resolved: bnxt_en: Shutdown FW DMA in bnxt_shutdown() The netif_close() call in bnxt_shutdown() only stops packet DMA. There may be FW DMA for trace logging (recently added) that will continue. If we kexec to a new kernel, the DMA will corrupt memory in the new kernel. Add bnxt_hwrm_func_drv_unrgtr() to unregister the driver from the FW. This will stop the FW DMA. In case the call fails, call pcie_flr() to reset the function and stop the DMA.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.8-1 (forky)linux 6.17.8-1 (forky)
linuxlinux
linuxlinux>= 24d694aec139e9e0a31c60993db79bd8ad575afe < 1a8a15c3f71d1199d510ccba4bc201cbd22040481a8a15c3f71d1199d510ccba4bc201cbd2204048
linuxlinux>= 24d694aec139e9e0a31c60993db79bd8ad575afe < bc7208ca805ae6062f353a4753467d913d963bc6bc7208ca805ae6062f353a4753467d913d963bc6
linuxlinux_kernel>= 0 < 6.17.8-16.17.8-1
linuxlinux_kernel>= 0 < 6.17.0-14.146.17.0-14.14
linuxlinux_kernel>= 6.13.0 < 6.17.86.17.8
msrccbl_mariner_1.0_arm
msrccbl_mariner_1.0_x64
msrccm1_git_2.23.4-2_on_cbl_mariner_1.0
ubuntulinux-aws
ubuntulinux-oracle

CVSS provenance

vendor_msrc7.5HIGH
vendor_redhat5.2MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.