← All Advisories

CVE-2026-72064

Last refreshed2026-10-11

Status: UPDATED  |  Advisory ID: CVE-2026-72064

Key Details

CVECVE-2026-72064
CVSS Score / Version
9.8 (Critical) / CVSS v3.1
Updated2026-10-11
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Prose
attack vector is network; attack complexity is low; privileges required is none; user interaction is none; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high.
Affected products
Linux Kernel

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux Kernel
SubsystemsOT Supporting Infrastructure
SectorsAll Sectors

What to Know

In the Linux kernel, the following vulnerability has been resolved:

net: mana: Sync page pool RX frags for CPU

MANA allocates RX buffers from page pool fragments when frag_count is

greater than 1. In that case the buffers remain DMA mapped by page pool

and the RX completion path does not call dma_unmap_single(). As a result,

the implicit sync-for-CPU normally performed by dma_unmap_single() is

missing before the packet data is passed to the networking stack.

This breaks RX on configurations which require explicit DMA syncing, for

example when booted with swiotlb=force.

Fix this by recording the page pool page and DMA sync offset when the RX

buffer is allocated, and syncing the received packet range for CPU access

before handing the RX buffer to the stack. (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-72064
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-72064