Bug 2481920 (CVE-2026-46084)
| Summary: | CVE-2026-46084 kernel: RDMA/mana_ib: Disable RX steering on RSS QP destroy | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security <prodsec-ir-bot> |
| Status: | NEW --- | QA Contact: | |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | unspecified | CC: | rhel-process-autobot, watson-tool-maintainers |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in the Linux kernel's RDMA (Remote Direct Memory Access) mana_ib driver. When a Receive Side Scaling Queue Pair (RSS QP) is destroyed, the vPort RX (receive) steering in the firmware is not properly disabled, leaving stale steering configurations. This can lead to receive completions being misdirected to transmit completion queues if network traffic continues and the virtual function (VF) interface is reactivated. The consequence is system instability and a denial of service.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
OSIDB Bzimport
2026-05-27 15:02:24 UTC
|