cbcvebase.
CVE-2026-23180
published 2026-02-14

CVE-2026-23180: In the Linux kernel, the following vulnerability has been resolved: dpaa2-switch: add bounds check for if_id in IRQ handler The IRQ handler extracts if_id from…

PriorityP432high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EPSS
0.12%
2.3th percentile
In the Linux kernel, the following vulnerability has been resolved: dpaa2-switch: add bounds check for if_id in IRQ handler The IRQ handler extracts if_id from the upper 16 bits of the hardware status register and uses it to index into ethsw->ports[] without validation. Since if_id can be any 16-bit value (0-65535) but the ports array is only allocated with sw_attr.num_ifs elements, this can lead to an out-of-bounds read potentially. Add a bounds check before accessing the array, consistent with the existing validation in dpaa2_switch_rx().

Affected

57 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.164-1 (bookworm)linux 6.1.164-1 (bookworm)
debianlinux-6.1< linux 6.1.164-1 (bookworm)linux 6.1.164-1 (bookworm)
linuxlinux
linuxlinux>= 24ab724f8a4661b2dc8e696b41df93bdc108f7a1 < 77611cab5bdfff7a070ae574bbfba20a1de99d1b77611cab5bdfff7a070ae574bbfba20a1de99d1b
linuxlinux>= 24ab724f8a4661b2dc8e696b41df93bdc108f7a1 < 34b56c16efd61325d80bf1d780d0e176be662f5934b56c16efd61325d80bf1d780d0e176be662f59
linuxlinux>= 24ab724f8a4661b2dc8e696b41df93bdc108f7a1 < f89e33c9c37f0001b730e23b3b05ab7b1ecface2f89e33c9c37f0001b730e23b3b05ab7b1ecface2
linuxlinux>= 24ab724f8a4661b2dc8e696b41df93bdc108f7a1 < 2447edc367800ba914acf7ddd5d250416b45fb312447edc367800ba914acf7ddd5d250416b45fb31
linuxlinux>= 24ab724f8a4661b2dc8e696b41df93bdc108f7a1 < 1b381a638e1851d8cfdfe08ed9cdbec5295b18c91b381a638e1851d8cfdfe08ed9cdbec5295b18c9
linuxlinux>= 24ab724f8a4661b2dc8e696b41df93bdc108f7a1 < 31a7a0bbeb006bac2d9c81a2874825025214b6d831a7a0bbeb006bac2d9c81a2874825025214b6d8
linuxlinux_kernel>= 0 < 6.1.164-16.1.164-1
linuxlinux_kernel>= 0 < 6.12.73-16.12.73-1
linuxlinux_kernel>= 0 < 6.18.10-16.18.10-1
linuxlinux_kernel>= 5.15.0 < 5.15.2005.15.200
linuxlinux_kernel>= 5.16.0 < 6.1.1636.1.163
linuxlinux_kernel>= 6.13.0 < 6.18.106.18.10
linuxlinux_kernel>= 6.2.0 < 6.6.1246.6.124
linuxlinux_kernel>= 6.7.0 < 6.12.706.12.70
ubuntulinux
ubuntulinux-aws
ubuntulinux-aws-5.15
ubuntulinux-aws-fips
ubuntulinux-azure
ubuntulinux-azure-5.15
ubuntulinux-azure-6.8
ubuntulinux-azure-fde-5.15

CVSS provenance

nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.0HIGH
vendor_ubuntu7.8HIGH
vendor_debian7.0HIGH
vendor_redhat7.0HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.