Answer in brief
CVE-2026-72312 records a Unknown severity vulnerability in octeontx2-af: fix VF bringup affecting PF promiscuous state. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=967db3529ecac305d230aa4e60abddf6ab63543a <daa2451640a3e0727fd598f5c2ccb8bb4d5a8b9c || >=967db3529ecac305d230aa4e60abddf6ab63543a <212c59e5e416859579272288fd325148fc316109 || >=967db3529ecac305d230aa4e60abddf6ab63543a <53e17d9ed779ad25870abb9c31bc294c71a2278c || >=967db3529ecac305d230aa4e60abddf6ab63543a <3de77d2f34c2bc2acaedabc2c5e0a561b85c283a || >=967db3529ecac305d230aa4e60abddf6ab63543a <3cf83432e0561aef6d7ec2664909d12d0ff0ffc1 || >=967db3529ecac305d230aa4e60abddf6ab63543a <fabb881df322da25442f98d23f5fa371e3c78ec4 | daa2451640a3e0727fd598f5c2ccb8bb4d5a8b9c, 212c59e5e416859579272288fd325148fc316109, 53e17d9ed779ad25870abb9c31bc294c71a2278c, 3de77d2f34c2bc2acaedabc2c5e0a561b85c283a, 3cf83432e0561aef6d7ec2664909d12d0ff0ffc1, fabb881df322da25442f98d23f5fa371e3c78ec4 |
| Linux/Linuxgeneric | 5.14 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: fix VF bringup affecting PF promiscuous state Mbox handling of nix_set_rx_mode for a VF with promiscuous and all_multi flags set to false causes deletion of the PF's promiscuous and allmulti MCAM rules. This occurs because the APIs that enable/disable these rules operate only on the PF, even when the mbox request is made via a VF interface. Guard both rvu_npc_enable_allmulti_entry() and rvu_npc_enable_promisc_entry() disable paths with an is_vf() check so that a VF bringing up or tearing down its interface cannot inadvertently clear the PF's MCAM rules.
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2026-72312 records a Unknown severity vulnerability in octeontx2-af: fix VF bringup affecting PF promiscuous state. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=967db3529ecac305d230aa4e60abddf6ab63543a <daa2451640a3e0727fd598f5c2ccb8bb4d5a8b9c || >=967db3529ecac305d230aa4e60abddf6ab63543a <212c59e5e416859579272288fd325148fc316109 || >=967db3529ecac305d230aa4e60abddf6ab63543a <53e17d9ed779ad25870abb9c31bc294c71a2278c || >=967db3529ecac305d230aa4e60abddf6ab63543a <3de77d2f34c2bc2acaedabc2c5e0a561b85c283a || >=967db3529ecac305d230aa4e60abddf6ab63543a <3cf83432e0561aef6d7ec2664909d12d0ff0ffc1 || >=967db3529ecac305d230aa4e60abddf6ab63543a <fabb881df322da25442f98d23f5fa371e3c78ec4 | daa2451640a3e0727fd598f5c2ccb8bb4d5a8b9c, 212c59e5e416859579272288fd325148fc316109, 53e17d9ed779ad25870abb9c31bc294c71a2278c, 3de77d2f34c2bc2acaedabc2c5e0a561b85c283a, 3cf83432e0561aef6d7ec2664909d12d0ff0ffc1, fabb881df322da25442f98d23f5fa371e3c78ec4 |
| Linux/Linuxgeneric | 5.14 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: fix VF bringup affecting PF promiscuous state Mbox handling of nix_set_rx_mode for a VF with promiscuous and all_multi flags set to false causes deletion of the PF's promiscuous and allmulti MCAM rules. This occurs because the APIs that enable/disable these rules operate only on the PF, even when the mbox request is made via a VF interface. Guard both rvu_npc_enable_allmulti_entry() and rvu_npc_enable_promisc_entry() disable paths with an is_vf() check so that a VF bringing up or tearing down its interface cannot inadvertently clear the PF's MCAM rules.
Quoted source text, attributed separately from HOL analysis.