PT-2026-72975 · Linux · Linux Kernel

CVE-2026-74523

·

Published

2026-08-15

·

Updated

2026-08-18

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A deadlock occurs in the recovery path of the qede NIC driver when VXLAN or GENEVE tunnel ports are configured. A transmit (TX) timeout triggers the qede recovery handler() function, which attempts to acquire the qede lock mutex while it is already held by the qede sp task function. Because the mutex is not recursive, the kworker blocks itself while holding the rtnl lock, causing the rtnetlink control plane of the entire machine to hang. This results in all subsequent tasks calling rtnl lock() (such as ip, ovs-vswitchd, lldpad, IPv6 addrconf, and sshd) blocking indefinitely, although the node may still respond to ping requests.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-96096
CVE-2026-74523

Affected Products

Linux Kernel