CVE-2026-72088

Summary

In the Linux kernel, the following vulnerability has been resolved:

scsi: hpsa: Fix DMA mapping leak on IOACCEL2 reset path

If phys_disk->in_reset is set, the function returns directly without undoing the resources acquired for the command. Add the missing error cleanup by unmapping the IOACCEL2 SG chain block when needed, unmapping the SCSI command, and dropping the outstanding IOACCEL command count before returning.

Affected Software

VendorProductVersion RangeStatus
LinuxLinuxc5dfd106414f3e038fee5c6f0800fd55ed07b41d < fca5edd748f00e87f2dd55a6333722b46af30e74affected
LinuxLinuxc5dfd106414f3e038fee5c6f0800fd55ed07b41d < fb40928c59329a50eadb3ce8bfd7a67f490a6212affected
LinuxLinuxc5dfd106414f3e038fee5c6f0800fd55ed07b41d < 018cbce6ee158244bb76cf638e8e3054e240aea9affected
LinuxLinuxc5dfd106414f3e038fee5c6f0800fd55ed07b41d < a61de4d7e22a9ab9a90094d0e180b378e09a1d2caffected
LinuxLinuxc5dfd106414f3e038fee5c6f0800fd55ed07b41d < e7bde072cceefc564413b46d64017c47a2e9977daffected
LinuxLinuxc5dfd106414f3e038fee5c6f0800fd55ed07b41d < d495b403d5b357dfe506b963bd7a78ecd5c7b667affected
LinuxLinuxc5dfd106414f3e038fee5c6f0800fd55ed07b41d < 782e1bf48672be44265c48e14602696c3c8ed904affected
LinuxLinuxc5dfd106414f3e038fee5c6f0800fd55ed07b41d < e166bafc483e927150cb9b5f286c9191ea0df84eaffected
LinuxLinux5.3affected
LinuxLinux0 < 5.3unaffected
LinuxLinux5.10.261 <= 5.10.*unaffected
LinuxLinux5.15.212 <= 5.15.*unaffected
LinuxLinux6.1.178 <= 6.1.*unaffected
LinuxLinux6.6.145 <= 6.6.*unaffected
LinuxLinux6.12.97 <= 6.12.*unaffected
LinuxLinux6.18.40 <= 6.18.*unaffected
LinuxLinux7.1.5 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References