A vulnerability was found in Linux Kernel up to 7.1.4 and classified as very critical. The impacted element is the function set_rq_size of the component mlx5. Such manipulation of the argument rq_wqe_shift leads to integer overflow.

This vulnerability is traded as CVE-2026-74297. The attack may be launched remotely. There is no exploit available.

It is suggested to upgrade the affected component.