CVE-2025-39973

Source
https://cve.org/CVERecord?id=CVE-2025-39973
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-39973.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-39973
Downstream
Related
Published
2025-10-15T07:55:55.590Z
Modified
2026-03-20T12:43:07.136125Z
Summary
i40e: add validation for ring_len param
Details

In the Linux kernel, the following vulnerability has been resolved:

i40e: add validation for ring_len param

The ring_len parameter provided by the virtual function (VF) is assigned directly to the hardware memory context (HMC) without any validation.

To address this, introduce an upper boundary check for both Tx and Rx queue lengths. The maximum number of descriptors supported by the hardware is 8k-32. Additionally, enforce alignment constraints: Tx rings must be a multiple of 8, and Rx rings must be a multiple of 32.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/39xxx/CVE-2025-39973.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
5c3c48ac6bf56367c4e89f6453cd2d61e50375bd
Fixed
0543d40d6513cdf1c7882811086e59a6455dfe97
Fixed
7d749e38dd2b7e8a80da2ca30c93e09de95bfcf9
Fixed
45a7527cd7da4cdcf3b06b5c0cb1cae30b5a5985
Fixed
d3b0d3f8d11fa957171fbb186e53998361a88d4e
Fixed
c0c83f4cd074b75cecef107bfc349be7d516c9c4
Fixed
05fe81fb9db20464fa532a3835dc8300d68a2f84
Fixed
afec12adab55d10708179a64d95d650741e60fe0
Fixed
55d225670def06b01af2e7a5e0446fbe946289e8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-39973.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.12.0
Fixed
5.4.300
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.245
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.194
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.155
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.109
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.50
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.16.10

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-39973.json"