Impact
Based on the description, it is inferred that a Virtual Function can reset the packet‑parsing configuration used by the Physical Function on octeontx2 hardware when HiGig2 or EDSA parsing is active. This reset can overwrite the Physical Function’s PKIND state, leading to incorrect packet header interpretation or disabling parsing altogether, effectively causing a denial of service. The weakness is an improper privilege enforcement flaw, allowing a lower‑privileged component to modify a higher‑level resource without adequate checks.
Affected Systems
The vulnerability exists in all Linux kernel releases that include the octeontx2-af driver. Any host that runs a kernel with this component and utilizes octeontx2 virtual functions can potentially be affected. The issue is vendor‑agnostic for Linux, affecting generic distributions where the driver code is present; specific kernel version numbers are not provided.
Risk and Exploitability
The CVSS score of 8.8 indicates a high severity kernel‑level impact. EPSS score of < 1% indicates a low probability of exploitation, and the flaw is not listed in CISA KEV. The flaw is exploitable when HiGig2 or EDSA parsing is enabled on virtual functions, requiring ability to create or modify VF configurations. Based on the description, it is inferred that the attack vector is local or privileged. Successful exploitation could corrupt PF state, potentially disabling the host’s network stack without needing external network access.
OpenCVE Enrichment