Race condition in Linux kernel - CVE-2026-45973
Published: May 28, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a race condition in the RDMA/mlx5 driver bond device handling when unloading the device during a firmware reset in LAG mode. A local user can trigger device teardown during this state to cause a denial of service.
The issue can cause the driver to hang indefinitely while waiting for UMR completion because completions never arrive.