Impact
The vulnerability resides in the RDMA/cxgb4 driver of the Linux kernel. When the write_tpt_entry function attempts to program a TPT entry and write_adapter_mem fails, the driver mistakenly fails to release the STAG index it previously allocated. The corresponding counter in stats.stag.cur is also left unchanged. Over time, this results in an unchecked growth of allocated indices, eventually exhausting kernel resources and degrading RDMA functionality.
Affected Systems
This issue affects all Linux kernel builds that include the cxgb4 RDMA driver. The specific affected kernel versions are not listed, so any deployment using the default Linux kernel with the cxgb4 driver should be considered potentially vulnerable until an updated kernel is available.
Risk and Exploitability
The EPSS score indicates a very low probability of exploitation, and the vulnerability is not listed in the CISA KEV catalog. Nonetheless, because it is a kernel bug, it requires privileged execution to exploit, though it could be triggered by normal kernel operation if the RDMA device experiences write failures. The potential impact is resource exhaustion that could lead to a denial of RDMA services or general kernel instability.
OpenCVE Enrichment
Debian DLA
Debian DSA