7

CVE-2026-92488

RDMA/erdma: complete object teardown when the destroy command fails

In the Linux kernel, the following vulnerability has been resolved:

RDMA/erdma: complete object teardown when the destroy command fails

erdma_destroy_qp(), erdma_destroy_cq(), erdma_dereg_mr(), and
erdma_destroy_ah() returned early when erdma_post_cmd_wait() failed,
leaking the queue buffers, MTTs, doorbells and the STAG, QPN, CQN and AHN
identifiers. A command timeout clears ERDMA_CMDQ_STATE_OK_BIT and
permanently disables the command queue, so no retry can succeed; the RDMA
core keeps the object after a failed destructor and forced uverbs cleanup
then nulls the pointers, making the resources unreachable.

Warn on failure but release every software-owned resource and return
success, since during terminal destruction the hardware command result is
only diagnostic.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 155055771704f8cbb5c176a4309b7dc30a50450c
Version < 5fcfc988ecf3e2bbe308b95c2c0d2f011d9afabe
Status affected
Version 155055771704f8cbb5c176a4309b7dc30a50450c
Version < ce7d205c264665517c25e8a3231cf2d0c2443e3c
Status affected
Version 155055771704f8cbb5c176a4309b7dc30a50450c
Version < 334145d683ad3e31d052247f10807f2ebc950351
Status affected
Version 155055771704f8cbb5c176a4309b7dc30a50450c
Version < 652befcba956ef357f480525ccbe25c59bc81d4d
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.0
Status affected
Version 0
Version < 6.0
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.12% 0.022
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
416baaa9-dc9f-4396-8d5f-8c081fb06d67 7 1 5.9
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/5fcfc988ecf3e2bbe308b95c2c0d2f011d9afabe
https://git.kernel.org/stable/c/ce7d205c264665517c25e8a3231cf2d0c2443e3c
https://git.kernel.org/stable/c/334145d683ad3e31d052247f10807f2ebc950351
https://git.kernel.org/stable/c/652befcba956ef357f480525ccbe25c59bc81d4d