CVE-2026-72131

Source
https://cve.org/CVERecord?id=CVE-2026-72131
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72131.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-72131
Downstream
Published
2026-08-15T05:53:07Z
Modified
2026-10-05T02:46:04Z
Summary
nvme-apple: Prevent shared tags across queues on Apple A11
Details

In the Linux kernel, the following vulnerability has been resolved:

nvme-apple: Prevent shared tags across queues on Apple A11

On Apple A11, tags of pending commands must be unique across the admin and IO queues, else the firmware crashes with "duplicate tag error for tag N", with N being the tag.

Apply the existing workaround for M1 of reserving two tags for the admin queue to A11.

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72131.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
655b6743bd900df39354e8bb6f1f2f8671fca004
Fixed
0dbec5e5b95ef57279433b285df7dd074085e7a0
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
7256eed48ce7d78ab9689d84135b77a15454de55
Fixed
ad1be9fe255b4affcba6336ccb9145d3e6f06680
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
89c00b34551e2478041a485b88cf021f1c63228f
Fixed
2c4baeb1747775d23a0c9d6e9f49e3d9417e3b6d
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
04d8ecf37b5e06d16228a4d37d8548c17cf70461
Fixed
59cef6abc924a84824b0c3f563a7fe74cd5fc7a4
Fixed
b7d9aaedf024bb6c0bb6a205848861d888eb1afa
Fixed
6fe0687245e8406bf26143bd45eb16441bbe5280
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6.1.188
Fixed
6.1.189
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6.6.157
Fixed
6.6.158
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6.12.110
Fixed
6.12.111

Affected versions

v6.*
v6.1.188
v6.12.110
v6.6.157

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72131.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
6.1.189
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.158
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.111
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.18.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72131.json"