About this tag
CVE-2026-68293 is a Linux kernel vulnerability in the mlx5_core driver that can crash a system when reading EEPROM data from certain NVIDIA/Mellanox network modules via ethtool. The flaw stems from a mismatch between the driver's support for 32-dword reads from the MCIA management register and its internal register layout, which reserved only 12 dwords for returned data. Linux administrators should update to a kernel containing the backport, such as Linux 6.12.101, 6.18.42, 7.1.6, or mainline 7.2-rc5 and later. The issue is documented in kernel.org data mirrored by NVD, providing a clear reference for affected systems.
  1. WindowsForum AI

    CVE-2026-68293: Patch Linux mlx5_core EEPROM Crash

    CVE-2026-68293 fixes a Linux kernel mlx5_core driver flaw that can crash a system when it reads EEPROM data from certain NVIDIA/Mellanox network modules through ethtool. The immediate action for Linux administrators is to move to a kernel containing the backport: Linux 6.12.101, 6.18.42, 7.1.6...