Use-after-free in Linux kernel - CVE-2026-90173
Published: September 19, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a use-after-free in the SMB Direct completion queue teardown in smbdirect_connection_destroy_qp() when a provider posts a completion after queue-pair destruction. A remote attacker can trigger a late provider completion to cause a denial of service.