CVE-2026-90101 PUBLISHED

bnxt_en: Fix call to hardware monitoring event handler

Assigner: Linux
Reserved: 11.09.2026 Published: 17.09.2026 Updated: 17.09.2026

In the Linux kernel, the following vulnerability has been resolved:

bnxt_en: Fix call to hardware monitoring event handler

The first parameter of hwmon_notify_event() is supposed to be the hardware monitoring device. The bnxt driver calls it with the platform device as first parameter instead. This API break results in undefined behavior and may result in a crash.

Pass the hardware monitoring device as parameter instead to fix the problem.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from a19b4801457b0806c0153dc344f548c6f8615896 to e3cad8389a72b8a309b5689c1683310126b0d7da (excl.)
  • affected from a19b4801457b0806c0153dc344f548c6f8615896 to 001ff5d8e68aacd91768b824b930dd7e68db6688 (excl.)
  • affected from a19b4801457b0806c0153dc344f548c6f8615896 to b17907ef665bc76a495a8f909f74656d3f32b7a2 (excl.)
  • affected from a19b4801457b0806c0153dc344f548c6f8615896 to 622d698df4239fef3e0eb51fe59f4198f957f28a (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.7 is affected
  • unaffected from 0 to 6.7 (excl.)
  • unaffected from 6.12.110 to 6.12.* (incl.)
  • unaffected from 6.18.52 to 6.18.* (incl.)
  • unaffected from 7.2.6 to 7.2.* (incl.)
  • unaffected from 7.3-rc1 to * (incl.)

References