Get a Demo

Let's Patch It!

Book a short call with one our specialists, we'll walk you through how Endor Patches work, and ask you a few questions about your environment (like your primary programming languages and repository management). We'll also send you an email right after you fill out the form, feel free to reply with any questions you have in advance!

CVE

CVE-2026-64125

net: bcmgenet: keep RBUF EEE/PM disabled
Back to all
CVE

CVE-2026-64125

net: bcmgenet: keep RBUF EEE/PM disabled

In the Linux kernel, the following vulnerability has been resolved:

net: bcmgenet: keep RBUF EEE/PM disabled

Setting RBUFEEEEN | RBUFPMEN in RBUFENERGYCTRL breaks the RX

path on GENET hardware once MAC EEE becomes active. RX traffic stops

flowing while the link stays up and the usual descriptor/RX error

counters remain quiet. In that state the MAC still accepts frames

(rbufovflowcnt keeps climbing) but RBUF no longer forwards them to

DMA, so rx_packets is no longer incremented at the netdev level. On

some boards the corruption ends up as a paging fault in

skbreleasedata via bcmgenetrxpoll on an LPI exit.

Reproduced on Pi 4B (BCM2711 + BCM54213PE) and confirmed by Florian

Fainelli on an internal Broadcom 4908-family board with the same crash

signature. RBUFPMEN is not publicly documented.

This shows up more often now that physupporteee() enables EEE by

default, but it also affects older kernels as soon as TX LPI is

turned on via ethtool, so it is not specific to recent changes.

Always clear RBUFEEEEN | RBUFPMEN in bcmgeneteeeenable_set so

the bits stay off across resets. UMAC and TBUF setup is left alone so

TX-side EEE keeps working.

Package Versions Affected

Package Version
patch Availability
No items found.

Automatically patch vulnerabilities without upgrading

Fix Without Upgrading
Detect compatible fix
Apply safe remediation
Fix with a single pull request

CVSS Version

Severity
Base Score
CVSS Version
Score Vector
C
H
U
9.8
-
3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
C
H
U
0
-
3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
C
H
U
-

Related Resources

No items found.

References

https://git.kernel.org/stable/c/2040eb83f6ada148fb32dd98b943a498005d79f2, https://git.kernel.org/stable/c/289499907399c5a9f2ed82cb34df49112bb8488f, https://git.kernel.org/stable/c/3d4ef05266ab16d8ef7dd21658a557801eb78704, https://git.kernel.org/stable/c/49bdf6bbb21b9c6e3f4d0c1910bf0ef98424be95, https://git.kernel.org/stable/c/9a1730245e416d11ad5c0f2c100061d61cc43f60, https://git.kernel.org/stable/c/a212fc08f5c48a16a94092bf0a9a8b7cf4483b11, https://git.kernel.org/stable/c/b579f3a73da7a7e74213558f4cc3d865c30aaa78, https://git.kernel.org/stable/c/f2782ddac82c70df313012da5f71f1f06b5553ca, https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64125.json, https://nvd.nist.gov/vuln/detail/CVE-2026-64125, https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Severity

9.8

CVSS Score
0
10

Basic Information

Base CVSS
9.8
EPSS Probability
0.00552%
EPSS Percentile
0.44064%
Introduced Version
6ef398ea60d931b97d69ed080bd0bd00fac38ec6,3.19.0,5.11.0,5.16.0,6.2.0,6.7.0,6.13.0,6.19.0,0
Fix Available
9a1730245e416d11ad5c0f2c100061d61cc43f60,5.10.258,5.15.209,6.1.175,6.6.142,6.12.92,6.18.34,7.0.11,6.1.176-1,6.12.94-1,5.15.0-1112.119~20.04.1,5.15.0-1117.126~20.04.1,5.15.0-1117.126~20.04.2,5.15.0-1112.122~20.04.1,5.15.0-186.196~20.04.1,5.15.0-1106.110~20.04.1,5.15.0-1107.113~20.04.1,5.15.0-184.194~20.04.1,5.15.0-1064.66~20.04.1,5.15.0-1109.115~20.04.1,7.0.0-28.28~24.04.1,7.0.0-1016.16~24.04.1,7.0.0-28.28.1~24.04.3,5.15.0-186.196,5.15.0-1112.119,5.15.0-1117.126,5.15.0-1112.122,5.15.0-1108.114,5.15.0-1095.103,5.15.0-1106.110,5.15.0-1107.113,5.15.0-1104.109,5.15.0-184.194,5.15.0-1107.108,5.15.0-1064.66,5.15.0-1053.53,5.15.0-1109.115,5.15.0-1075.79,0:5.15.0-323.211.3.3.el8uek,0:5.15.0-323.211.3.3.el9uek

Fix Critical Vulnerabilities Instantly

Secure your app without upgrading.
Fix Without Upgrading