CVE-2026-68133
Last modified
CVE-2026-68133 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: ice: fix PTP Call Trace during PTP release If a PF reset occurs when the PTP state is ICE_PTP_UNINIT, then ice_ptp_rebuild() will update the state to ICE_PTP_ERROR. This will result in the following PTP release call trace during driver unload: kernel BUG at lib/list_debug.c:52! ice_ptp_release+0x332/0x3c0 [ice] ice_deinit_features.part.0+0x10e/0x120 [ice] ice_remove+0x100/0x220 [ice] This was observed when passing PF1 through to a VM.
Description
In the Linux kernel, the following vulnerability has been resolved: ice: fix PTP Call Trace during PTP release If a PF reset occurs when the PTP state is ICE_PTP_UNINIT, then ice_ptp_rebuild() will update the state to ICE_PTP_ERROR. This will result in the following PTP release call trace during driver unload: kernel BUG at lib/list_debug.c:52! ice_ptp_release+0x332/0x3c0 [ice] ice_deinit_features.part.0+0x10e/0x120 [ice] ice_remove+0x100/0x220 [ice] This was observed when passing PF1 through to a VM. ice_ptp_init() fails because ctrl_pf is NULL and sets the state to ICE_PTP_UNINIT. Fix by detecting the ICE_PTP_UNINIT state in ice_ptp_rebuild() and returning without error, preventing the invalid state transition to ICE_PTP_ERROR. The only valid path to ICE_PTP_ERROR is from ICE_PTP_RESETTING after a failed rebuild.
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 8293e4cb2ff54b1ec4f7206dcb74c908f62a3fb8, < 7d517b255f669cedd09830214d55f2f413b34481; >= 8293e4cb2ff54b1ec4f7206dcb74c908f62a3fb8, < e4406cbdd915f702d2ed9ee8b30683a16b06c6ac; >= 8293e4cb2ff54b1ec4f7206dcb74c908f62a3fb8, < 14fceda28069fdbe1bb49cdb6e1774892b583348; >= 8293e4cb2ff54b1ec4f7206dcb74c908f62a3fb8, < f6a7e00b81e35ef1325234925f2fe1e53b466f92 |
| Linux | Linux | 6.9 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-68133?
How severe is CVE-2026-68133?
How do I fix CVE-2026-68133?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-68128In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68129In the Linux kernel, the following vulnerability has been re…
- CVE-2026-6813The Continually plugin for WordPress is vulnerable to Stored…4.4
- CVE-2026-68130In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68131In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68132In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68134In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68135In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68136In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68137In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68138In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68139In the Linux kernel, the following vulnerability has been re…
Are you affected by CVE-2026-68133?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
