Junglewise Threat Intelligence

CVE-2026-64056: Linux Kernel Cortina Gemini Ethernet race condition in gmac_rx

CVE-2026-64056 · Severity: info · CVSS 0 · Published 2026-07-19

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A race condition was identified in the Linux kernel's Cortina Gemini Ethernet driver. This driver manages network connectivity for specific hardware; a flaw in how it handles incoming data packets could lead to data corruption or system instability when both network ports are used simultaneously. The issue has been resolved by ensuring each network port manages its own data buffers independently.

Technical details

A race condition exists in the gmac_rx() function of the Cortina Gemini Ethernet driver (drivers/net/ethernet/cortina/gemini.c). The driver used a 'static local' sk_buff (SKB) pointer to assemble packet fragments. Because the Gemini hardware features two Ethernet ports that can operate concurrently, simultaneous RX traffic on both ports could lead to interleaved fragment assembly or pointer overwrites. This could result in memory corruption, kernel panics, or data leakage between ports. The fix migrates the RX SKB pointer to the per-port 'gemini_ethernet_port' structure and ensures proper lifecycle management (zeroing the pointer) during NAPI processing, errors, or interface shutdown.

Affected products

  • Linux Linux Kernel 4.16 to 6.9.x

Timeline

  • 2026-05-09: patched: Initial patch by Linus Walleij
  • 2026-07-19: disclosed: CVE published

References

Related threats