GHSA-wcg4-82x5-ppxcunknown
In the Linux kernel, the following vulnerability has been resolved: net: ibm: emac: mal: fix...
🔗 CVE IDs covered (1)
📋 Description
In the Linux kernel, the following vulnerability has been resolved:
net: ibm: emac: mal: fix potential system hang in mal_remove()
napi_disable() is not idempotent and calling it on an already-disabled or unenabled NAPI context will cause the kernel to spin indefinitely waiting for the NAPI_STATE_SCHED bit to clear.
In mal_remove(), napi_disable() is called unconditionally. If no MACs were registered, NAPI was never enabled. Also, if they were registered but subsequently unregistered, NAPI was already disabled in mal_unregister_commac(). In either case, calling napi_disable() causes the kernel to hang upon module removal.
Fix this by only calling napi_disable() in mal_remove() if the commac list is not empty (which implies NAPI is enabled).
🔗 References (9)
- https://nvd.nist.gov/vuln/detail/CVE-2026-97411
- https://git.kernel.org/stable/c/7c5d41f87f079990bf241359e3c1332d8d10fe87
- https://git.kernel.org/stable/c/c4cb9a728df66c46067b26263f5beb633aae4087
- https://git.kernel.org/stable/c/f6c1aad9b35fa083f48ce0c5926204891d82e089
- https://git.kernel.org/stable/c/34c4cae51718d6f393415e01c61314c1bde02f2e
- https://git.kernel.org/stable/c/62126e73e230cf4bd6c27cf201949c4290af84a1
- https://git.kernel.org/stable/c/9c1c814a662d9c81959eba591bb52b24639390f2
- https://git.kernel.org/stable/c/f0399b3e212741bc5a64b8399d6266c4a150bdfe
- https://github.com/advisories/GHSA-wcg4-82x5-ppxc