CVE-2026-68417
N/A
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
RDMA/siw: publish QP after initialization
siw_create_qp() currently calls siw_qp_add() before the queues, CQ pointers, state, completion, and device list entry are ready. A QPN lookup can therefore reach a QP that is still being constructed.
Move siw_qp_add() to the end of siw_create_qp(), after QP initialization and before adding the QP to the siw device list.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | f29dd55b0236f7a26a4b9dd69186e3c04266797b < 36e91a58397ca8c978e38a0bf389f0c6113fa8ca | affected |
| Linux | Linux | f29dd55b0236f7a26a4b9dd69186e3c04266797b < 74912ad168f87d6b2b670a87987bb302d6e64aa1 | affected |
| Linux | Linux | f29dd55b0236f7a26a4b9dd69186e3c04266797b < fcc9d50022bcdb1f9f7ed04955c72b4a7355af3d | affected |
| Linux | Linux | f29dd55b0236f7a26a4b9dd69186e3c04266797b < 52f9fcb191143448df55fd215ff09c5207fed43e | affected |
| Linux | Linux | f29dd55b0236f7a26a4b9dd69186e3c04266797b < bb27fcc67c429d97f785c92c35a6c5adebb05d7f | affected |
| Linux | Linux | 5.3 | affected |
| Linux | Linux | 0 < 5.3 | unaffected |
| Linux | Linux | 6.6.148 <= 6.6.* | unaffected |
| Linux | Linux | 6.12.101 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.42 <= 6.18.* | unaffected |
| Linux | Linux | 7.1.6 <= 7.1.* | unaffected |
| Linux | Linux | 7.2-rc4 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/36e91a58397ca8c978e38a0bf389f0c6113fa8ca
- https://git.kernel.org/stable/c/74912ad168f87d6b2b670a87987bb302d6e64aa1
- https://git.kernel.org/stable/c/fcc9d50022bcdb1f9f7ed04955c72b4a7355af3d
- https://git.kernel.org/stable/c/52f9fcb191143448df55fd215ff09c5207fed43e
- https://git.kernel.org/stable/c/bb27fcc67c429d97f785c92c35a6c5adebb05d7f
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.