-

CVE-2026-68396

scsi: core: wake eh reliably when using scsi_schedule_eh

In the Linux kernel, the following vulnerability has been resolved:

scsi: core: wake eh reliably when using scsi_schedule_eh

Drivers which use the scsi_schedule_eh function to run the error handler
currently risk the error handler thread never waking once all commands are
timed out or inactive. There is no enforced memory order between setting
the host into error recovery state and counting busy commands. This can
result in a race with scsi_dec_host_busy where neither CPU sees both
conditions of all commands inactive and the host error state to request
waking the error handler.

To fix this, run the scsi_schedule_eh's scsi_eh_wakeup from a new work item
which will use rcu to ensure scsi_schedule_eh's call to scsi_host_busy will
occur after the error state is globally visible and will be seen by any
current scsi_dec_host_busy callers.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 6eb045e092efefafc6687409a6fa6d1dabf0fb69
Version < 866efe8ae8b8b4d095501001b026e1022734be28
Status affected
Version 6eb045e092efefafc6687409a6fa6d1dabf0fb69
Version < c7a15091237205770bd9bd4d14eb1f3029d97a34
Status affected
Version 6eb045e092efefafc6687409a6fa6d1dabf0fb69
Version < 24d7abda6a2a19e113334accc10029f6a4b57257
Status affected
Version 6eb045e092efefafc6687409a6fa6d1dabf0fb69
Version < dccf3b1798b70f94e958b3d00b83010399e6fb05
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 5.5
Status affected
Version 0
Version < 5.5
Status unaffected
Version <= 6.12.*
Version 6.12.101
Status unaffected
Version <= 6.18.*
Version 6.18.42
Status unaffected
Version <= 7.1.*
Version 7.1.6
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.1
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/866efe8ae8b8b4d095501001b026e1022734be28
https://git.kernel.org/stable/c/c7a15091237205770bd9bd4d14eb1f3029d97a34
https://git.kernel.org/stable/c/24d7abda6a2a19e113334accc10029f6a4b57257
https://git.kernel.org/stable/c/dccf3b1798b70f94e958b3d00b83010399e6fb05