-
CVE-2026-98153
- EPSS 0.15%
- Veröffentlicht 25.09.2026 10:36:24
- Zuletzt bearbeitet 30.09.2026 14:10:59
- Erkennungen
nvme: fix racy access to FDP placement id array
In the Linux kernel, the following vulnerability has been resolved: nvme: fix racy access to FDP placement id array nvme_query_fdp_info() is called per-path and therefore prone to races. It populates head->nr_plids/head->plids for fdp registration. But nothing protects that pair from concurrent access - two paths scanning the same namespace can race to populate it. Avoid the race by moving this initialization work to nvme_alloc_ns_head() which is called once per shared namespace.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
30b5f20bb2ddab013035399e5c7e6577da49320a
Version <
e0a23e3c8c4c3ce11529fa70d2292b4e56d143ba
Status
affected
Version
30b5f20bb2ddab013035399e5c7e6577da49320a
Version <
56e1c6bbe4bb084d7ecf61698afdf70be23dd35f
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
6.16
Status
affected
Version
0
Version <
6.16
Status
unaffected
Version <=
7.2.*
Version
7.2.7
Status
unaffected
Version <=
*
Version
7.3-rc2
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.15% | 0.031 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|
https://git.kernel.org/stable/c/e0a23e3c8c4c3ce11529fa70d2292b4e56d143ba
https://git.kernel.org/stable/c/56e1c6bbe4bb084d7ecf61698afdf70be23dd35f