CVSS 9.8 · CRITICAL
CVE-2026-80609OOB vulnerability in Linux qede network driver
In the Linux kernel, the following vulnerability has been resolved: qede: fix out-of-bounds check for cqe->len_list[] Move index check before element access.
View on NVDAnalysis
Se ha identificado una vulnerabilidad crítica en el kernel de Linux que afecta al driver de red qede (utilizado en hardware QLogic). Un atacante podría explotar un acceso fuera de límites (OOB) mediante paquetes de red malintencionados para provocar un fallo del sistema o potencialmente ejecutar código de forma remota.
Relevant roles
LinuxBackendCloudciberseguridadDockerKubernetes
Severity
Score: 9.8(CRITICAL)
Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HAV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: UNCHANGED
C: HIGH
I: HIGH
A: HIGH
EPSS
Probability of exploitation (next 30 days): 0.0017 (0.2%)
Percentile: 6.8%
EPSS: 2026-08-28
Technical description
In the Linux kernel, the following vulnerability has been resolved: qede: fix out-of-bounds check for cqe->len_list[] Move index check before element access.
Published: 8/28/2026, 8:16:44 AM
Last modified: 8/29/2026, 7:16:45 AM
References
- https://git.kernel.org/stable/c/1aacefd074b5dcc99b8dbcd73e1c963ed5010110
- https://git.kernel.org/stable/c/6d203bdd227fca1787f8a80cf84b990936633c5a
- https://git.kernel.org/stable/c/6d46ab395803f162cdc50e8d346e5f1a4e766771
- https://git.kernel.org/stable/c/b17751a2ebc4aef3ce6be6f71ee8df92bf5ddfcd
- https://git.kernel.org/stable/c/bd3a6a083b408e96437dbd86ff543ba9ec3a788b
- https://git.kernel.org/stable/c/e30af53dca803893a29eb3bbe0539752ba435410
- https://git.kernel.org/stable/c/f9ba47fce5932c15891c89c60e76dfaca919cb8d