Home

Description

In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss() Sashiko points out that the user can specify WQs sharing the same CQ as a part of the uAPI and this will trigger the WARN_ON() then go on to corrupt the kernel. Just reject it outright and fail the QP creation.

PUBLISHED Reserved 2026-05-13 | Published 2026-05-28 | Updated 2026-05-30 | Assigner Linux




HIGH: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Product status

Default status
unaffected

c15d7802a42402a87880a17eee89ff023e49ecc0 (git) before 9cc0c6b1ba8cd5c55aef043e1384de0a8b4efa71
affected

c15d7802a42402a87880a17eee89ff023e49ecc0 (git) before 9ef65af26b2a6738bf15812042e84b3112402d3a
affected

c15d7802a42402a87880a17eee89ff023e49ecc0 (git) before db991ba50087ad99fa12a2c483aa3be19671ea73
affected

c15d7802a42402a87880a17eee89ff023e49ecc0 (git) before 159f2efabc89d3f931d38f2d35876535d4abf0a3
affected

Default status
affected

6.8
affected

Any version before 6.8
unaffected

6.12.91 (semver)
unaffected

6.18.30 (semver)
unaffected

7.0.7 (semver)
unaffected

7.1-rc3 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/9cc0c6b1ba8cd5c55aef043e1384de0a8b4efa71

git.kernel.org/...c/9ef65af26b2a6738bf15812042e84b3112402d3a

git.kernel.org/...c/db991ba50087ad99fa12a2c483aa3be19671ea73

git.kernel.org/...c/159f2efabc89d3f931d38f2d35876535d4abf0a3

cve.org (CVE-2026-46117)

nvd.nist.gov (CVE-2026-46117)

Download JSON