Use-after-free in Linux kernel - CVE-2026-92512
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local user to cause a kernel crash.
The vulnerability exists due to use-after-free in ib_query_qp() when querying a queue pair through the RDMA netlink flow while the queue pair is being destroyed. A local user can send a netlink request to query the queue pair during its destruction to cause a kernel crash.
Affected software
How to mitigate CVE-2026-92512
External References
- https://git.kernel.org/stable/c/001383248e5d754bbddb7ae2a8573bc8501c85d8
- https://git.kernel.org/stable/c/038cf231b7099ba6202dcc0c1ea01525122df09f
- https://git.kernel.org/stable/c/2ef2ea52ae41bd9efa83139e97ae839de7e17156
- https://git.kernel.org/stable/c/709ba0e5311bd034eb4d9c1c00cc4e1109d6dc3e
- https://git.kernel.org/stable/c/8998829739c31fdbc892078e4449887d902e5dc9
- https://git.kernel.org/stable/c/a608af8cde3dd38936b356bbdeedea0653a05b3f