CVE-2026-53088
In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: fix off-by-one in bcmgenet_put_txcb The write_ptr points to the next open tx_cb. We want to return the tx_cb that gets rewinded, so we must rewind the pointer first then return the tx_cb that it points to. That way the txcb can be correctly cleaned up.
- Published Jun 24, 2026
- CVSS 9.8 critical
- 0.8% chance of exploitation in the next 30 days (EPSS)
- A fix is available