Linux Kernel i40e Driver Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in the Linux kernel's i40e network driver. The issue arises after a Physical Function (PF) reset and running diagnostic tests with ethtool. If the reset and the test are initiated too close together, it can cause a crash by interrupting the driver's operations. The vulnerability affects several versions of the Linux kernel.

Impact

Exploitation of this vulnerability can lead to a kernel panic, causing a system crash.

Remediation

Users can apply the latest patches available in the Linux kernel to address this vulnerability. Instructions for updating the kernel can be found in the official Linux kernel documentation.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
3.5
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.