CVE-2026-80715

Unknown

Last modified

CVE-2026-80715 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: igc: remove napi_synchronize() in igc_down() When an AF_XDP zero-copy application is killed abruptly, the XSK pool is torn down but NAPI keeps polling. igc_clean_rx_irq_zc() then returns the full budget on every poll, so napi_complete_done() never clears NAPI_STATE_SCHED. igc_down() calls napi_synchronize() before napi_disable(), so it spins forever waiting for that bit and the interface never goes down.

Description

In the Linux kernel, the following vulnerability has been resolved: igc: remove napi_synchronize() in igc_down() When an AF_XDP zero-copy application is killed abruptly, the XSK pool is torn down but NAPI keeps polling. igc_clean_rx_irq_zc() then returns the full budget on every poll, so napi_complete_done() never clears NAPI_STATE_SCHED. igc_down() calls napi_synchronize() before napi_disable(), so it spins forever waiting for that bit and the interface never goes down. Drop the napi_synchronize() and let napi_disable() do the job -- it sets NAPI_STATE_DISABLE, which forces the stuck poll to complete. Reorder it ahead of igc_set_queue_napi() so the NAPI mapping is cleared only after polling has stopped, matching the recent igb fix b1e067240379.

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= fc9df2a0b520d7d439ecf464794d53e91be74b93, < ad6e0df267dc96edb7de1fa0a2fb2a70645bff86; >= fc9df2a0b520d7d439ecf464794d53e91be74b93, < 605585a8d89aaeb0122e9016fdaa92376897a705; >= fc9df2a0b520d7d439ecf464794d53e91be74b93, < a0f16c337691813f8d8f014c01fff5a368e08898; >= fc9df2a0b520d7d439ecf464794d53e91be74b93, < f929a6fe5b7ae1e72d2c6d18cd69ab90dcf689d2; >= fc9df2a0b520d7d439ecf464794d53e91be74b93, < 3b5aee6fcbf6b58112d40d19c8d31fa3f78ee668; >= fc9df2a0b520d7d439ecf464794d53e91be74b93, < 9a2b637aef4e515c2179774888441d00e8a5ae95; >= fc9df2a0b520d7d439ecf464794d53e91be74b93, < 5ffab5b9589c50e4cfc0cf36ffd76c89422d4019
LinuxLinux5.14

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-80715?
In the Linux kernel, the following vulnerability has been resolved: igc: remove napi_synchronize() in igc_down() When an AF_XDP zero-copy application is killed abruptly, the XSK pool is torn down but NAPI keeps polling. igc_clean_rx_irq_zc() then returns the full budget on every poll, so napi_complete_done() never clears NAPI_STATE_SCHED. igc_down() calls napi_synchronize() before napi_disable(), so it spins forever waiting for that bit and the interface never goes down. Drop the napi_synchronize() and let napi_disable() do the job -- it sets NAPI_STATE_DISABLE, which forces the stuck poll to complete. Reorder it ahead of igc_set_queue_napi() so the NAPI mapping is cleared only after polling has stopped, matching the recent igb fix b1e067240379.
How severe is CVE-2026-80715?
Severity scoring for CVE-2026-80715 is pending analysis.
How do I fix CVE-2026-80715?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-80715?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST