-

CVE-2026-89842

scsi: qla2xxx: Skip NVMe LS reject IOCB when FW not started

In the Linux kernel, the following vulnerability has been resolved:

scsi: qla2xxx: Skip NVMe LS reject IOCB when FW not started

qla_nvme_xmt_ls_rsp() bails out to the out: label when firmware is not
started (!ha->flags.fw_started), but the out: path unconditionally calls
qla_nvme_ls_reject_iocb(), which ends in qla2x00_start_iocbs() and an
unconditional doorbell write to the request queue in-pointer register.
This rings the firmware doorbell and queues an IOCB that stopped or
resetting firmware cannot consume, and touches MMIO during the reset/EEH
window where fw_started is also clear.

Only emit the LS reject IOCB (and ring the doorbell) when fw_started is
set; otherwise just clean up and return. The post-allocation failure
cases (SRB alloc / qla2x00_start_sp() failure) run with firmware started
and still send the reject. Apply the same guard to the reject emission
in qla2xxx_process_purls_pkt().
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 875386b98857822b77ac7f95bdf367b70af5b78c
Version < 2935b730211c5c1433aa6101fa3b55df2b63869a
Status affected
Version 875386b98857822b77ac7f95bdf367b70af5b78c
Version < 7c1fc75dd3fb6b6414508fbdf7aeed0d757c9120
Status affected
Version 875386b98857822b77ac7f95bdf367b70af5b78c
Version < ac4b019ac07844d3f67ea5e48b1d982b2170d1a7
Status affected
Version 875386b98857822b77ac7f95bdf367b70af5b78c
Version < e9bfb56e2c1bda49d3c5442d824569d71eec07e2
Status affected
Version 875386b98857822b77ac7f95bdf367b70af5b78c
Version < f7e46ebffc5781aab3f1f5a5d4350addbb5833f4
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.6
Status affected
Version 0
Version < 6.6
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.51
Status unaffected
Version <= 7.2.*
Version 7.2.5
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.102
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/2935b730211c5c1433aa6101fa3b55df2b63869a
https://git.kernel.org/stable/c/7c1fc75dd3fb6b6414508fbdf7aeed0d757c9120
https://git.kernel.org/stable/c/ac4b019ac07844d3f67ea5e48b1d982b2170d1a7
https://git.kernel.org/stable/c/e9bfb56e2c1bda49d3c5442d824569d71eec07e2
https://git.kernel.org/stable/c/f7e46ebffc5781aab3f1f5a5d4350addbb5833f4