-

CVE-2026-93097

cxl/mbox: Break poison list loop on an empty payload

In the Linux kernel, the following vulnerability has been resolved:

cxl/mbox: Break poison list loop on an empty payload

A device that returns count == 0 with CXL_POISON_FLAG_MORE set on every
iteration never advances nr_records, so the max_errors guard never
trips and the do/while loops forever while holding poison.mutex. That
hangs the sysfs-triggered scan thread and blocks all subsequent poison
operations on the device. The existing "Protect against an uncleared
_FLAG_MORE" guard was intended to bound a misbehaving device but does
not cover the count == 0 case.

Stop the loop on an empty payload so a malfunctioning or malicious
device cannot wedge the poison scan.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version ed83f7ca398b3798b82c1d5d1113011c0e5a2198
Version < 86771c105293ca26bfcc320b4f60d32c137b54aa
Status affected
Version ed83f7ca398b3798b82c1d5d1113011c0e5a2198
Version < 42eab80981f4d2ac820e253e80ecf92f8cd91f69
Status affected
Version ed83f7ca398b3798b82c1d5d1113011c0e5a2198
Version < 6ad491cef1a812cf7b53aa769cd8869516c47362
Status affected
Version ed83f7ca398b3798b82c1d5d1113011c0e5a2198
Version < e77594e0cea67ab1c2317a27aa77a744e26ad6a6
Status affected
Version ed83f7ca398b3798b82c1d5d1113011c0e5a2198
Version < 8b301c4afbce4bc3f94528441d8d5ce1366504ad
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.4
Status affected
Version 0
Version < 6.4
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.102
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/86771c105293ca26bfcc320b4f60d32c137b54aa
https://git.kernel.org/stable/c/42eab80981f4d2ac820e253e80ecf92f8cd91f69
https://git.kernel.org/stable/c/6ad491cef1a812cf7b53aa769cd8869516c47362
https://git.kernel.org/stable/c/e77594e0cea67ab1c2317a27aa77a744e26ad6a6
https://git.kernel.org/stable/c/8b301c4afbce4bc3f94528441d8d5ce1366504ad