Improper Check or Handling of Exceptional Conditions in Linux kernel - CVE-2026-90130
Published: September 19, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper handling of an initialization failure in the vDPA simulator cleanup path when creating a vDPA simulator and worker creation fails. A local user can trigger vDPA simulator initialization under this failure condition to cause a denial of service.
Affected software
How to mitigate CVE-2026-90130
External References
- https://git.kernel.org/stable/c/05ddc94afb69e36df59e88cfa9e5c7bf9d10cfd0
- https://git.kernel.org/stable/c/68b726b3a01fb02a68843781b17d05ef3d759987
- https://git.kernel.org/stable/c/bd670e5dfd2b01fd9692f61fa1456434c54026a4
- https://git.kernel.org/stable/c/ca6f3fa599cb764518df595368b743f856fdb516
- https://git.kernel.org/stable/c/feafa109f031ed111f7f968e447c13985db498e0