CVE-2026-43345: net: ipa: fix event ring index not programmed for IPA v5.0+

Published May 8, 2026
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

net: ipa: fix event ring index not programmed for IPA v5.0+

For IPA v5.0+, the event ring index field moved from CHCCNTXT0 to CHCCNTXT1. The v5.0 register definition intended to define this field in the CHCCNTXT1 fmask array but used the old identifier of ERINDEX instead of CHERINDEX.

Without a valid event ring, GSI channels could never signal transfer completions. This caused gsichanneltransquiesce() to block forever in waitforcompletion().

At least for IPA v5.2 this resolves an issue seen where runtime suspend, system suspend, and remoteproc stop all hanged forever. It also meant the IPA data path was completely non functional.

Affected Software

12 affected components
Linux Linux kernel (ipa driver)>=5.0
Linux Linux kernel>=6.4<6.6.136
Linux Linux kernel>=6.7<6.12.83
Linux Linux kernel>=6.13<6.18.24
Linux Linux kernel>=6.19<6.19.14
Linux Linux kernel=7.0-rc1
Linux Linux kernel=7.0-rc2
Linux Linux kernel=7.0-rc3
Linux Linux kernel=7.0-rc4
Linux Linux kernel=7.0-rc5
Linux Linux kernel=7.0-rc6
Linux Linux kernel=7.0-rc7

Event History

May 8, 2026
CVE Published
via MITRE·01:39 PM
Data Sourced
via MITRE·01:39 PM
DescriptionSeverity
Data Sourced
via NVD·02:16 PM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2026-43345?

CVE-2026-43345 has not been assigned a specific severity rating, but it pertains to a critical fix in the Linux kernel involving event ring indexing for IPA v5.0+.

2

How do I fix CVE-2026-43345?

To fix CVE-2026-43345, ensure you update your Linux kernel to a version that includes the patch addressing the event ring index issue for IPA v5.0+.

3

What products are affected by CVE-2026-43345?

CVE-2026-43345 affects Linux kernel versions starting from 5.0 that utilize the ipa driver.

4

What is the nature of the vulnerability in CVE-2026-43345?

CVE-2026-43345 involves an issue where the event ring index was not properly programmed, which could lead to improper handling of network events.

5

Is CVE-2026-43345 exploitable remotely?

The exploitability of CVE-2026-43345 may depend on the system configuration and network setup, but it is primarily related to local handling of network events within the kernel.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203