U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

CVE-2026-23180 Detail

Description

In the Linux kernel, the following vulnerability has been resolved: dpaa2-switch: add bounds check for if_id in IRQ handler The IRQ handler extracts if_id from the upper 16 bits of the hardware status register and uses it to index into ethsw->ports[] without validation. Since if_id can be any 16-bit value (0-65535) but the ports array is only allocated with sw_attr.num_ifs elements, this can lead to an out-of-bounds read potentially. Add a bounds check before accessing the array, consistent with the existing validation in dpaa2_switch_rx().


Metrics

NVD enrichment efforts reference publicly available information to associate vector strings. CVSS information contributed by other sources is also displayed.
CVSS 4.0 Severity and Vector Strings:

NIST CVSS score
NIST: NVD
N/A
NVD assessment not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to [email protected].

URL Source(s) Tag(s)
https://git.kernel.org/stable/c/1b381a638e1851d8cfdfe08ed9cdbec5295b18c9 kernel.org
https://git.kernel.org/stable/c/2447edc367800ba914acf7ddd5d250416b45fb31 kernel.org
https://git.kernel.org/stable/c/31a7a0bbeb006bac2d9c81a2874825025214b6d8 kernel.org
https://git.kernel.org/stable/c/34b56c16efd61325d80bf1d780d0e176be662f59 kernel.org
https://git.kernel.org/stable/c/77611cab5bdfff7a070ae574bbfba20a1de99d1b kernel.org
https://git.kernel.org/stable/c/f89e33c9c37f0001b730e23b3b05ab7b1ecface2 kernel.org

Weakness Enumeration

CWE-ID CWE Name Source

Change History

1 change records found show changes

Quick Info

CVE Dictionary Entry:
CVE-2026-23180
NVD Published Date:
02/14/2026
NVD Last Modified:
02/14/2026
Source:
kernel.org