Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-97434— dpaa2-switch: fix handling of NAPI on the remove path

Quick assessment

Affected
Linux Linux
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

在 Linux 内核中,已修复以下漏洞: dpaa2-switch:修复移除路径中 NAPI 的处理问题 对于 DPSW(Data Path Switch)设备,所有 NAPI 实例都绑定到第一个交换端口的 net_device,但被所有端口共享。只有当最后一个端口关闭时,这些 NAPI 实例才会被禁用。 这会在 路径中引发问题:每个端口依次被注销和释放,导致尽管 NAPI 实例尚未被禁用,它们却被提前删除。 为避免此问题,将 调用与 调用分离,确保在所有端口都关闭之后,再尝试删除 NAPI 实例。同时,使 的调用

AI Predicted 3.3 Difficulty: Moderate EPSS 0.17% · P6

Possible ATT&CK Techniques 1 AI

T1610 · Deploy Container

Affected Version Matrix 14

VendorProduct Version RangeStatus
Linux Linux 0b1b71370458860579831e77485883fcf2e8fbbe< d39603e21087e9ef9cd125e5895cdc70b2eb154d affected
0b1b71370458860579831e77485883fcf2e8fbbe< bd16f46d0796109d241d6311a7577f9956467c96 affected
0b1b71370458860579831e77485883fcf2e8fbbe< c996faba71fc465ad12c6d177bd1a9ad974f9ee8 affected
0b1b71370458860579831e77485883fcf2e8fbbe< 569df157eb874cb3b50554d73b89f31599397b42 affected
0b1b71370458860579831e77485883fcf2e8fbbe< 6518f87771c8833e587bd9881346fa759651c2ae affected
0b1b71370458860579831e77485883fcf2e8fbbe< e23d7c8c1d4ba435c457d7ffb2669175ec819b07 affected
5.13 affected
< 5.13 unaffected
… +6 more rows
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-97434

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
dpaa2-switch: fix handling of NAPI on the remove path
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: dpaa2-switch: fix handling of NAPI on the remove path All the NAPI instances for a DPSW device are attached to the first switch port's net_device but shared by all ports. The NAPI instances get disabled only once the last port goes down. This causes an issue on the .remove() path where each port is unregistered and freed one at a time, causing the NAPI instances to be deleted even though they are not disabled. In order to avoid this, split up the unregister_netdev() calls from the free_netdev() so that we make sure all ports go down before we attempt a deletion of NAPI instances. Also, make the netif_napi_del() explicit as it is on the .probe() path.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Linux Linux 0b1b71370458860579831e77485883fcf2e8fbbe ~ d39603e21087e9ef9cd125e5895cdc70b2eb154d -
Linux Linux 5.13 -

II. Public POCs for CVE-2026-97434

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-97434

请登录查看更多情报信息。

Patches & Fixes for CVE-2026-97434 (5)

Same Patch Batch · Linux · 2026-09-24 · 234 CVEs total

CVE-2026-93207 9.8 CRITICAL SUNRPC: Zero rpc_gss_wire_cred at svcauth_gss_decode_credbody() entry
CVE-2026-97413 9.8 CRITICAL RDMA/rtrs-srv: Fix integer underflow in process_read and process_write
CVE-2026-93228 9.1 CRITICAL svcrdma: Reject Write/Reply chunks with segcount 0
CVE-2026-93799 8.8 HIGH wifi: iwlwifi: mvm: validate sta_id in BA window status notif
CVE-2026-97442 8.8 HIGH wifi: ath11k: fix invalid data access in ath11k_dp_rx_h_undecap_nwifi
CVE-2026-97409 8.8 HIGH nvme-fc: Do not cancel requests in io target before it is initialized
CVE-2026-93806 8.8 HIGH wifi: cfg80211: validate assoc response length before status and IE access
CVE-2026-93793 8.8 HIGH wifi: iwlwifi: mvm: validate TX_CMD response layout
CVE-2026-93790 8.8 HIGH wifi: iwlwifi: mvm: fix out-of-bounds tid_data access in BA notif
CVE-2026-93284 8.8 HIGH drm/pagemap: dma-unmap pages before handling migration errors
CVE-2026-93280 8.8 HIGH greybus: audio: bound the topology section sizes against the fetched size
CVE-2026-97509 8.8 HIGH thunderbolt: Keep XDomain reference during the lifetime of a service
CVE-2026-93827 8.4 HIGH virtio-fs: avoid double-free on failed queue setup
CVE-2026-97450 8.4 HIGH ACPICA: validate handler object type in two places
CVE-2026-97452 8.4 HIGH ACPICA: Prevent adding invalid references
CVE-2026-97451 8.4 HIGH ACPICA: Fix integer overflow in acpi_ex_opcode_3A_1T_1R() (mid_op)
CVE-2026-97455 8.4 HIGH ACPICA: Fix use-after-free in acpi_ds_terminate_control_method()
CVE-2026-97433 8.2 HIGH nvme: validate FDP configuration descriptor sizes
CVE-2026-93787 8.1 HIGH smb: client: bound dirent name against end of SMB response in cifs_filldir
CVE-2026-93786 8.1 HIGH ksmbd: preserve VFS inherited POSIX ACL mask

Showing top 20 of 234 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2026-97434

No comments yet


Leave a comment