Impact
The ixgbe driver mistakenly attempts to configure XPS for XDP Transmit queues, causing a KASAN out‑of‑bounds write in the netif_set_xps_queue routine. This results in a memory corruption warning and can lead to a kernel crash or degraded system availability. The weakness is a classic out‑of‑bounds memory write (buffer overflow).
Affected Systems
Any Linux kernel with the ixgbe driver on hardware that has 64 or more CPUs, such as the Intel E610 adapter, is susceptible. The vulnerability is tied to the driver’s handling of XDP Tx queues and not limited to a specific kernel version in the data provided.
Risk and Exploitability
EPSS score of <1% indicates a very low likelihood of exploitation, and the CVSS score of 7.8 signals high severity. The vulnerability is not listed in CISA’s KEV catalog. There is no known remote attack vector or documented privilege escalation path. The risk is primarily denial of service rather than arbitrary code execution.
OpenCVE Enrichment