Null Pointer Dereference in Linux Kernel's RDMA/rtrs Client
CVE-2026-98355

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
6 October 2026

What is CVE-2026-98355?

A vulnerability exists in the Linux kernel's RDMA/rtrs client where an error during the initialization path can lead to a null pointer dereference. If the init_path() function encounters an error, the cleanup process attempts to execute rtrs_clt_close_conns(). This can result in a call to event tracing code with a NULL kobj name, which attempts to copy from it, leading to a potential system crash. A safeguard has been added to check for NULL before any copy operation to mitigate this issue, enhancing the stability and security of the RDMA/rtrs component.

Affected Version(s)

Linux 5a93929d9f9a1d82946ddd49e260b6dd1756ad6d

Linux 5a93929d9f9a1d82946ddd49e260b6dd1756ad6d < 99c24a8968ebef0573825b5cb89d5985d51635b9

Linux 6.1

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.