PT-2026-94657 · Linux · Linux Kernel

CVE-2026-90309

·

Published

2026-09-17

·

Updated

2026-09-24

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the RDMA/erdma component where EQ handlers look up CQs from dev->cq xa and invoke completion or error callbacks outside the xarray lock. This allows erdma destroy cq() to erase the CQ from the xarray and free its queue buffer and doorbell record while a previously scheduled EQ handler is still utilizing the CQ.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-102878
CVE-2026-90309
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel