PT-2026-94430 · Linux · Linux Kernel

CVE-2026-90082

·

Published

2026-09-17

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the mana network driver where the mana gd query max resources() function calculates the gc->num msix usable value based on the CPU count and resp.max msix, but fails to consider the actual device MSI-X table size. This can lead to a situation where the system attempts to access indices beyond the region mapped by msix map region(), resulting in a page fault. The mana gd setup remaining irqs() function may walk indices that exceed the table entries, and because msi insert desc() only checks against the MSI domain hardware size, it does not prevent out-of-bounds requests in global PCI/MSI domains.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-90082
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel