Back

MEDIUM

dpaa2-eth: put MAC endpoint device on disconnect

Published Aug 10, 2026

Description

fsl_mc_get_endpoint() returns the MAC endpoint device with a reference taken through device_find_child(). The Ethernet connect path stores that device in mac->mc_dev and keeps it for the lifetime of the connected MAC object.

However, the disconnect path only disconnects and closes the MAC before freeing the dpaa2_mac object. It does not drop the endpoint device reference stored in mac->mc_dev, so every successful connect leaks that device reference when the MAC is later disconnected.

Drop the endpoint device reference after closing the MAC and before freeing the dpaa2_mac object.

Affected products

Remediation

Red Hat statement

This issue affects NXP DPAA2 Ethernet interfaces. On MAC disconnect, the endpoint device reference from fsl_mc_get_endpoint() is not released, leaking device references. Systems without DPAA2 Ethernet hardware are not affected.

Red Hat mitigation

To mitigate this issue, prevent the fsl_dpaa2_eth module from loading. See https://access.redhat.com/solutions/41278 for instructions.

Metrics

Weaknesses (1)

References (12)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Linux
Published Aug 10, 2026
Updated Aug 19, 2026
Reserved Jul 30, 2026
NVD
Status Received
Modified Aug 19, 2026
Red Hat
Severity Low
Public date Aug 10, 2026