Linux Kernel Vulnerability Affecting RDMA Functionality
CVE-2026-98353

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
6 October 2026

What is CVE-2026-98353?

A vulnerability in the Linux kernel's RDMA implementation can cause deadlock situations during lookups of Queue Pair (QP) and Completion Queue (CQ) from Event Queue (EQ) interrupts. This occurs when an interrupt arrives while the create-path operation is holding the xa_lock, preventing the lookup from completing and potentially halting essential processes. To mitigate this, IRQ-safe XArray helpers should be employed during QP and CQ updates, ensuring that sleeping allocations do not interfere with interrupt handling. Proper initialization of the arrays with XA_FLAGS_LOCK_IRQ is critical to maintaining system stability.

Affected Version(s)

Linux 4545f355654d044d35a31cd01cc46f491a8a7c36 < 74d4085221a7ec5440996af199ccadfa75b9eb0e

Linux 98df2aee1459ee1c62c70cbe9b370d2a532aea36 < 00baeade709fb66da647e8327e8398bb532e30f7

Linux 610ef81797bb4f709e8675c1d8d093bb9ccdcbd8

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.