In the Linux kernel, the following vulnerability has been resolved:
net: stmmac: dwc-qos: Disable split header for Tegra194
There is a long-standing issue with the Synopsys DWC Ethernet driver for Tegra194 where random system crashes have been observed [0]. The problem occurs when the split header feature is enabled in the stmmac driver. In the bad case, a larger than expected buffer length is received and causes the calculation of the total buffer length to overflow. This results in a very large buffer length that causes the kernel to crash. Why this larger buffer length is received is not clear, however, the feedback from the NVIDIA design team is that the split header feature is not supported for Tegra194. Therefore, disable split header support for Tegra194 to prevent these random crashes from occurring.
[0] https://lore.kernel.org/linux-tegra/[email protected]/
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Feb 27, 2025 | Feb 27, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Feb 26, 2025 |
| Ubuntu | — | Upgrade linux-azure-5.15Upgrade linux-kvmUpgrade linux-ibmUpgrade linux-gcp-5.15Upgrade linux-nvidiaUpgrade linux-intel-iotgUpgrade linux-riscv-5.15Upgrade linux-gcp-5.4Upgrade linux-bluefieldUpgrade linux-oracle-5.15Upgrade linux-fipsUpgrade linux-lowlatency-hwe-5.15Upgrade linux-raspi-5.4Upgrade linux-oracleUpgrade linux-gkeUpgrade linux-oracle-5.4Upgrade linux-gcpUpgrade linux-hwe-5.4Upgrade linux-gcp-fipsUpgrade linux-realtimeUpgrade linux-awsUpgrade linuxUpgrade linux-aws-fipsUpgrade linux-hwe-5.15Upgrade linux-azure-5.4Upgrade linux-azureUpgrade linux-raspiUpgrade linux-aws-5.4Upgrade linux-aws-5.15Upgrade linux-lowlatencyUpgrade linux-gkeopUpgrade linux-azure-fipsUpgrade linux-iotUpgrade linux-ibm-5.4Upgrade linux-intel-iotg-5.15 | Mar 3, 2025 | Feb 26, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | May 27, 2026 | Feb 26, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub