CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

CVE-2025-37873: eth: bnxt: fix missing ring index trim on error path

Description

In the Linux kernel, the following vulnerability has been resolved:

eth: bnxt: fix missing ring index trim on error path

Commit under Fixes converted tx_prod to be free running but missed
masking it on the Tx error path. This crashes on error conditions,
for example when DMA mapping fails.

Classification

CVE ID: CVE-2025-37873

Affected Products

Vendor: Linux

Product: Linux

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.02% (probability of being exploited)

EPSS Percentile: 4.25% (scored less or equal to compared to others)

EPSS Date: 2025-06-07 (when was this score calculated)

References

https://nvd.nist.gov/vuln/detail/CVE-2025-37873
https://git.kernel.org/stable/c/21e70f694bc0dcb40174b0940cc52a7769fc19e0
https://git.kernel.org/stable/c/3742c55de00266fa7c8fd2c5d61a453d223a9cd1
https://git.kernel.org/stable/c/12f2d033fae957d84c2c0ce604d2a077e61fa2c0

Timeline