CVE-2026-53217
Description
A flaw was found in the Linux kernel's mvpp2 network driver. This issue occurs because the driver incorrectly synchronizes received (RX) data at the hardware packet offset. On systems with non-coherent Direct Memory Access (DMA), this can lead to the Central Processing Unit (CPU) reading stale cache contents instead of the actual received network frame data. This vulnerability could result in information disclosure.
Understanding the Weakness (CWE)
Integrity,Confidentiality,Other
Technical Impact: Modify Application Data; Read Application Data; Alter Execution Logic
Frequently Asked Questions
Not sure what something means? Check out our Security Glossary.
Want to get errata notifications? Sign up here.