CVE-2026-23045 addresses a Linux kernel vulnerability in the ENA network driver where a missing lock during devlink parameter updates could lead to a kernel warning and potential system instability. This issue specifically affects the net/ena module. While no CVSS score is available, the vulnerability's impact is primarily system stability rather than direct data compromise, and it requires specific conditions within the kernel's operation to manifest. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 6.17CNA affecteddefault affected | |
| Linux | Linux | >= 816b52624cf6a03ea541956b448025d844a8287d, < 8da901ffe497a53fa4ecc3ceed0e6d771586f88e, >= 816b52624cf6a03ea541956b448025d844a8287d, < f2c4bcfa193eef1b7457a56be9c47a8de015f225CNA affecteddefault unaffected |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.
Linux kernel (Azure CVM) vulnerabilities
Jul 24, 2026Linux kernel (Azure) vulnerabilities
Jul 24, 2026Linux kernel (OEM) vulnerabilities
Jul 23, 2026Linux kernel vulnerabilities
Jul 20, 2026kernel: net/ena: fix missing lock when update devlink params
Feb 4, 2026