In the Linux kernel, the following vulnerability has been resolved:
RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event()
Sashiko points out the radix_tree itself is RCU safe, but nothing ever
frees the mlx4_srq struct with RCU, and it isn't even accessed within the
RCU critical section. It also will crash if an event is delivered before
the srq object is finished initializing.
Use the spinlock since it isn't easy to make RCU work, use
refcount_inc_not_zero() to protect against partially initialized objects,
and order the refcount_set() to be after the srq is fully initialized.
References
Configurations
Configuration 1 (hide)
|
History
11 Jun 2026, 03:00
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Linux linux Kernel
Linux |
|
| References | () https://git.kernel.org/stable/c/1e2a44875b6afb4add1115f7f3351dcbeb6f273d - Patch | |
| References | () https://git.kernel.org/stable/c/8b7833f3bce35cb0d01c1503781523c099c675f0 - Patch | |
| References | () https://git.kernel.org/stable/c/c9341307ea16b9395c2e4c9c94d8499d91fe31d0 - Patch | |
| CWE | NVD-CWE-noinfo | |
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.1:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:* |
30 May 2026, 11:17
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
28 May 2026, 10:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-28 10:16
Updated : 2026-06-11 03:00
NVD link : CVE-2026-46181
Mitre link : CVE-2026-46181
CVE.ORG link : CVE-2026-46181
JSON object : View
Products Affected
linux
- linux_kernel
CWE
