CVE-2026-53217

Description

A flaw was found in the Linux kernel's mvpp2 network driver. This issue occurs because the driver incorrectly synchronizes received (RX) data at the hardware packet offset. On systems with non-coherent Direct Memory Access (DMA), this can lead to the Central Processing Unit (CPU) reading stale cache contents instead of the actual received network frame data. This vulnerability could result in information disclosure.

Understanding the Weakness (CWE)

Integrity,Confidentiality,Other

Technical Impact: Modify Application Data; Read Application Data; Alter Execution Logic

Frequently Asked Questions

Want to get errata notifications? Sign up here.