CVE-2026-80617 PUBLISHED

net: airoha: fix foe_check_time allocation size

Assigner: Linux
Reserved: 26.08.2026 Published: 28.08.2026 Updated: 28.08.2026

In the Linux kernel, the following vulnerability has been resolved:

net: airoha: fix foe_check_time allocation size

foe_check_time is declared as u16 pointer but was allocated with only ppe_num_entries bytes instead of ppe_num_entries * sizeof(u16).

When airoha_ppe_foe_verify_entry() is called with hash >= ppe_num_entries/2, it writes beyond the allocated buffer, causing heap buffer overflow and potential kernel crash.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 56b99327a451917f1c17f85fc33ea8293c08a9ee to 112b5eff24e044561ee9599a0d34e0fcea1df4e0 (excl.)
  • affected from 6d5b601d52a27aafff555b480e538507901c672c to 9f7cd1e26d2f1766438edc9b9254f2c618f9ae98 (excl.)
  • affected from 6d5b601d52a27aafff555b480e538507901c672c to 5c121ee635680c93d7074becf14cfbaac140f80d (excl.)
  • affected from 6.18.33 to 6.18.40 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.19 is affected
  • unaffected from 0 to 6.19 (excl.)
  • unaffected from 6.18.40 to 6.18.* (incl.)
  • unaffected from 7.1.5 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References