Junglewise Threat Intelligence

CVE-2026-53088: Linux Kernel Broadcom GENET off-by-one in bcmgenet_put_txcb

CVE-2026-53088 · Severity: info · CVSS 0 · Published 2026-06-24

Technologies: Linux. Vendors: Linux.

Executive brief

A flaw was discovered in the Linux kernel's Broadcom GENET network driver. This issue involves an 'off-by-one' error during network data transmission processing, which could prevent the system from correctly cleaning up memory used for network traffic. While primarily a technical bug, such issues can sometimes lead to system instability or memory exhaustion if triggered repeatedly.

Technical details

An off-by-one vulnerability exists in the bcmgenet_put_txcb function within the drivers/net/ethernet/broadcom/genet/bcmgenet.c component of the Linux kernel. The write_ptr, which tracks the next available transmit control block (tx_cb), was being used to return a pointer before the necessary pointer decrement (rewind) occurred. This logic error resulted in the function returning the wrong control block, preventing proper unmapping and cleanup of transmit fragments. An attacker could potentially exploit this to cause a memory leak or kernel instability. The issue has been resolved by reordering the pointer rewind logic to ensure the correct tx_cb is returned for cleanup.

Affected products

  • Linux Linux 3.16.50 to 3.17, 4.13, 5.10.258, 5.15.209

Timeline

  • 2026-06-24: disclosed: CVE published by kernel.org
  • 2026-06-24: advisory: NVD record created

References