Linux Kernel Vulnerability in vhost-scsi Related to T10 PI Handling
CVE-2026-74703

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
22 August 2026

What is CVE-2026-74703?

A vulnerability exists in the Linux kernel's vhost-scsi component related to the validation of T10 PI protection bytes during request mapping. When T10 PI is negotiated, improper handling could allow a malformed request to claim protection bytes that either cover or exceed the payload length, leading to serious issues. This could result in zero data SGL counts reaching the sg_alloc_table_chained() function, potentially causing system instability. To mitigate this risk, the kernel now rejects protection lengths exceeding the payload and ensures correct error propagation from the protection SGL calculation before memory allocation.

Affected Version(s)

Linux bca939d5bcd00d6faea99c47eafd60bed573ef03 < 2417a498cf3fe64d06faf87e236eda98dd4f04e0

Linux bca939d5bcd00d6faea99c47eafd60bed573ef03

Linux bca939d5bcd00d6faea99c47eafd60bed573ef03

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.