Bug 2482576 (CVE-2026-46117)
| Summary: | CVE-2026-46117 kernel: RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss() | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security DevOps Team <prodsec-dev> |
| Status: | NEW --- | QA Contact: | |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | unspecified | CC: | rhel-process-autobot, watson-tool-maintainers |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in the Linux kernel's RDMA/mana component. A local user could trigger a kernel corruption by providing specific configurations through the user Application Programming Interface (uAPI) that cause an internal error. This issue arises when Work Queues (WQs) are specified to share the same Completion Queue (CQ), leading to an unstable system state.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
OSIDB Bzimport
2026-05-28 11:04:04 UTC
Upstream advisory: https://lore.kernel.org/linux-cve-announce/2026052814-CVE-2026-46117-a93b@gregkh/T This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:27789 https://access.redhat.com/errata/RHSA-2026:27789 This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:30129 https://access.redhat.com/errata/RHSA-2026:30129 This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:42550 https://access.redhat.com/errata/RHSA-2026:42550 This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:42552 https://access.redhat.com/errata/RHSA-2026:42552 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions Via RHSA-2026:65712 https://access.redhat.com/errata/RHSA-2026:65712 |