Out-of-Bounds Vulnerability in Linux Kernel Affecting RDMA/RXE
CVE-2026-80863

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
4 September 2026

What is CVE-2026-80863?

A vulnerability in the Linux kernel’s RDMA/rxe implementation can lead to an out-of-bounds write scenario during the free operation of resources. The issue arises when the 'max_dest_rd_atomic' parameter is updated before freeing associated resources, potentially causing a slab out-of-bounds write. This flaw was identified in the free_rd_atomic_resources function, as it does not properly validate array indices against the new allocation size. It has significant implications for system stability and security, necessitating prompt attention from system administrators to apply relevant patches.

Affected Version(s)

Linux b6bbee0d2438a2c9c7525f5bd7047a8b2ce4f38f < 142c8165b7974b40fa62c393653edb5c00b8b5fe

Linux b6bbee0d2438a2c9c7525f5bd7047a8b2ce4f38f < 30b90b55201902b2b8edcdbe2315ccd4c7547002

Linux b6bbee0d2438a2c9c7525f5bd7047a8b2ce4f38f < 9b7d66ea88ae9395e42766b94a5c717b158b940a

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.