CVE-2026-43283

Source
https://cve.org/CVERecord?id=CVE-2026-43283
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-43283.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-43283
Downstream
Published
2026-05-06T11:29:03.726Z
Modified
2026-05-28T03:55:50.654564625Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H CVSS Calculator
Summary
net: ethernet: ec_bhf: Fix dma_free_coherent() dma handle
Details

In the Linux kernel, the following vulnerability has been resolved:

net: ethernet: ecbhf: Fix dmafree_coherent() dma handle

dmafreecoherent() in error path takes priv->rxbuf.alloclen as the dma handle. This would lead to improper unmapping of the buffer.

Change the dma handle to priv->rxbuf.allocphys.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/43xxx/CVE-2026-43283.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6af55ff52b02d492d45db88df3e461fa51a6f753
Fixed
0f589ee54fd6d76d3f75e745f7f12c64cbd749e5
Fixed
accd0599bc8e73b962247c6c6c70ca7aa1f8e8d0
Fixed
8320727be7ff704e07c87624efc2a4a75f54b3ce
Fixed
1e300c33ef3cc544c2b9c693778fe9490cfe9184
Fixed
1b1371cd4032ae859838ebc74215f569987bb197
Fixed
1b1d3c5d58a80a19d017a409aa2308162bab5bbf
Fixed
7e54ff938bebb173822b4c38b33fc164c1cabf92
Fixed
ffe68c3766997d82e9ccaf1cdbd47eba269c4aa2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-43283.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.15.0
Fixed
5.10.252
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.202
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.165
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.128
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.75
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.16
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
6.19.6

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-43283.json"