PT-2026-90222 · Linux · Linux

CVE-2026-89506

·

Publicado

2026-09-11

·

Atualizado

2026-09-11

Nenhuma

Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
In the Linux kernel, the following vulnerability has been resolved:
RDMA/uverbs: Add UVERBS ATTR UHW to UVERBS METHOD REG MR
The original commit missed that three drivers (mthca, irdma, siw) have UHW data associated with reg mr that cannot be passed through the ioctl. They also assume that the udata cannot be NULL, so failing to pass a valid udata can trigger a NULL udata crash in those drivers.
This never happens in real systems since in rdma-core ibv cmd reg mr ex() does not accept a udata and those three drivers don't use it, however a malicious userspace could trigger it.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2026-89506

Produtos afetados

Linux