In the Linux kernel, the following vulnerability has been resolved: eth: bnxt: fix out-of-range access of vnic_info array The bnxt_queue_{start | stop}() access vnic_info as much as allocated, which indicates bp->nr_vnics. So, it should not reach bp->vnic_info[bp->nr_vnics].
Upstream advisory: https://lore.kernel.org/linux-cve-announce/2025041624-CVE-2025-22112-845f@gregkh/T