Impact
The bnxt driver’s handling of software UDP GSO can leave a transmit queue permanently stalled when the driver returns early with the NETDEV_TX_BUSY status while a doorbell rings the hardware doorbell, the network device kernel’s TX watchdog reports a stalled queue. This results in loss of outbound traffic and effectively a denial of service for the affected network interface.
Affected Systems
All Linux kernel builds using the bnxt device driver are susceptible. The so any system running a kernel that includes the bnxt driver before the described patch is at risk.
Risk and Exploitability
The CVSS score is 7.5, indicating a high severity. EPSS is low – below 1% – and the vulnerability is not listed in the CISA KEV catalog. Inferred attack vectors include an attacker sending specially vulnerable machine, which would trigger the early return path and stall the TX queue. No public exploits have been reported, but the conditions for exploitation – excessive remotely via the network stack.
OpenCVE Enrichment