Linux Kernel Vulnerability in nvmet-rdma Affecting Resource Management
CVE-2026-98152

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
25 September 2026

What is CVE-2026-98152?

The vulnerability in the Linux kernel's nvmet-rdma component allows for a queue leak when the connection backlog is exceeded. This issue occurs during the handling of pending disconnecting queues, where the connect path inappropriately drops the device reference while failing to manage the newly allocated queue and its associated InfiniBand resources. This oversight can lead to inefficient resource utilization and potential system instability.

Affected Version(s)

Linux 204b9645536bb4a77a2cb35e6519dbf9f4ea1665 < 186414a6a1a34e081b07e8873622f90402346235

Linux 00eaa58988d35fd47ca8811f7f72871591f61ffb

Linux 712f3268a62d0df98a7ee991cba963ced2e58007 < 32e598324edc3ebb1ac9362d5b9fc30ce0de4873

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.