CVE-2026-68419

Source
https://cve.org/CVERecord?id=CVE-2026-68419
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68419.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-68419
Downstream
Published
2026-08-10T12:04:39Z
Modified
2026-08-18T03:31:18Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
RDMA/irdma: Prevent rereg_mr for non-mem regions
Details

In the Linux kernel, the following vulnerability has been resolved:

RDMA/irdma: Prevent rereg_mr for non-mem regions

When a QP/CQ/SRQ is created, a two step process is used where the buffer is allocated in userspace and explicitly registered with the normal reg_mr mechanism prior to creating the actual QP/CQ/SRQ object.

These special registrations are indicated via an ABI field so the driver knows that they do not have a valid mkey and to skip the actual CQP command submission.

Since these are real MR objects from the core's perspective, it is possible for a user application to invoke rereg_mr on them and cause a real CQP op to be emitted with the zero-initialized mkey value of 0.

Fix this by preventing rereg_mr on these special regions.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68419.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
715fdb3b30541cc8180b7cdc6aa9f8c307afdf25
Fixed
fb46d134e1b8690bed2da9005b36d32d2efd34ac
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
5ac388db27c443dadfbb0b8b23fa7ccf429d901a
Fixed
b5029e91c63406e4f4c8d58161048b41b6f0bd8c
Fixed
ca1c29f05274b737dc964e28b97803750d7cf7ec
Fixed
dbaa37e060918c45517786e37ecab0f300b48fa9
Fixed
a846aecb931b4d65d5eafa92a0623545af46d4f2
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6.6.120
Fixed
6.6.148

Affected versions

v6.*
v6.6.120
v6.6.121
v6.6.122
v6.6.123
v6.6.124
v6.6.125
v6.6.126
v6.6.127
v6.6.128
v6.6.129
v6.6.130
v6.6.131
v6.6.132
v6.6.133
v6.6.134
v6.6.135
v6.6.136
v6.6.137
v6.6.138
v6.6.139
v6.6.140
v6.6.141
v6.6.142
v6.6.143
v6.6.144
v6.6.145
v6.6.146
v6.6.147

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68419.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
6.6.148
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.101
Fixed
6.18.42
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
7.1.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68419.json"