Linux Kernel RDMA/rtrs-clt Vulnerability in Connection Management
CVE-2026-98352
What is CVE-2026-98352?
The Linux kernel contains a vulnerability in the RDMA/rtrs-clt component that could lead to a connection management issue. This occurs during the address resolution phase when the client borrows shared Completion Queue (CQ) credits. If the connection is interrupted, it may result in a pool leak as the connection manager can return a restart error without properly handling destruction procedures. The vulnerability allows for a race condition leading to possible memory mismanagement, indicated by warnings during cleanup processes. A fix ensures that a flag is set to prevent borrowing credits after teardown has initiated, enhancing the stability and reliability of connection management.
Affected Version(s)
Linux 3b89e92c2a95a39c38a3808f4528e502a39bd94d
Linux 3b89e92c2a95a39c38a3808f4528e502a39bd94d < 74c4ed55e61f1b65ddbebc5b635d136461a1c3da
Linux 3b89e92c2a95a39c38a3808f4528e502a39bd94d < 6f8020fe7465f49e234a576c04e415e9d08c7878