GPU VulnDB

Database/Control plane, storage & DevOps

Linux crypto driver for Marvell OCTEON TX: The scatter-gather cleanup path in the Marvell OCTEON TX crypto driver uses

CVE-2026-74280Control plane, storage & DevOpscurated

Impact

The scatter-gather cleanup path in the Marvell OCTEON TX crypto driver uses the wrong loop index, so DMA mappings are torn down against the wrong entries. Getting DMA cleanup wrong on an accelerator is exactly the primitive that undermines IOMMU-based device isolation — the mapping that should have been revoked stays live, or a mapping belonging to something else is revoked. OCTEON is used both as a DPU and as an inline crypto/offload engine in storage and network appliances.

Who can reach it

Local, through the crypto API on a host with an OCTEON TX accelerator.

What to do

Kernel/driver upgrade plus host reboot. Nothing to flash. If you run OCTEON accelerators in a shared-tenancy role, verify IOMMU is enabled and enforcing on those devices as a standing control.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.