Impact
In the Linux kernel, the RDMA/bng_re component can enter an endless loop when the firmware stalls. The helper function ignores the wait_event_timeout expiration, so a stalled firmware response can cause the system to repeatedly wait, each time restarting a full timeout period. This behavior can lock the RDMA path indefinitely, leading to a denial of service in RDMA operations.
Affected Systems
The vulnerability affects the Linux kernel RDMA/bng_re driver. No specific kernel versions are listed in the CNA data, implying that all supported releases of the Linux kernel that include the bng_re driver may be impacted.
Risk and Exploitability
The CVSS score is not disclosed, but the EPSS score is below 1% and the vulnerability is not in CISA KEV, suggesting a low exploitation probability. The flaw requires access to the RDMA subsystem, so an attacker would need local privileges or would need to compromise a component that interacts with RDMA; there is no known remote exploitation vector. If exploited, an attacker could stall RDMA commands indefinitely, effectively disrupting network services relying on RDMA.
OpenCVE Enrichment