Unrated severityNVD Advisory· Published Jul 19, 2026· Updated Jul 30, 2026
CVE-2026-63997
CVE-2026-63997
Description
In the Linux kernel, the following vulnerability has been resolved:
ethtool: module: avoid leaking a netdev ref on module flash errors
module_flash_fw_schedule() is missing undo for setting the "in_progress" flag and taking the netdev reference. Delay taking these, the device can't disappear while we are holding rtnl_lock.
Affected products
2Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.