{"id":"AZL-106386","summary":"CVE-2026-98304 affecting package kernel 6.6.157.1-1","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nnet: bcmgenet: restore the hardware filters on open\n\nbcmgenet_hfb_init() runs INIT_LIST_HEAD() on priv-\u003erxnfc_list, which drops\nevery rule off the list, and bcmgenet_open() calls it on each ifup. Every\nrule the user configured is silently lost:\n\n  # ethtool -N eth0 flow-type ether dst $MAC action 0\n  Added rule with ID 0\n  # ethtool -n eth0 | grep -c Filter:\n  1\n  # ip link set eth0 down && ip link set eth0 up\n  # ethtool -n eth0 | grep -c Filter:\n  0\n\nInitialise the lists once at probe and restore the rules on open, as\nbcmgenet_resume() already does.","modified":"2026-10-07T14:17:02.639419374Z","published":"2026-10-06T09:18:21Z","upstream":["CVE-2026-98304"],"references":[{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-98304"}],"affected":[{"package":{"name":"kernel","ecosystem":"Azure Linux:3","purl":"pkg:rpm/azure-linux/kernel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"last_affected":"6.6.157.1-1"}]}],"database_specific":{"source":"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-106386.json"}}],"schema_version":"1.9.0"}