CVE-2026-80694

Source
https://cve.org/CVERecord?id=CVE-2026-80694
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80694.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80694
Downstream
Published
2026-08-28T06:53:00.442Z
Modified
2026-08-31T03:30:36.642173685Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
net: ethernet: mtk_eth_soc: pass eth to mtk_handle_irq_rx in poll_controller
Details

In the Linux kernel, the following vulnerability has been resolved:

net: ethernet: mtkethsoc: pass eth to mtkhandleirqrx in pollcontroller

mtkhandleirqrx expects a struct mtketh * (matching the requestirq cookie), but mtkpollcontroller incorrectly passed the netdevice *. Calling ndopollcontroller with CONFIGNETPOLL_CONTROLLER enabled would then crash.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80694.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
8186f6e382d8719d0a4bc0ef218c4dd7cf55b496
Fixed
3bd58ac9ca0c552651f533c1bd280dd19ae7d4e8
Fixed
276f1f180f55d56cf5992a581e20ed2b3dfa6ced
Fixed
7eb46318d53940dab63dea7130e720b67a656104
Fixed
e095f249e2209674f6366f6db0383a2b96e19239

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80694.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.8.0
Fixed
6.12.103
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.44
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80694.json"