Memory leak in Linux kernel - CVE-2026-90267
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper resource cleanup in the SCSI disk driver command setup routines when handling UNMAP or WRITE SAME commands after SCSI scatter-gather table allocation failure. A local user can issue UNMAP or WRITE SAME commands when SCSI scatter-gather table allocation fails to cause a denial of service.