CVE-2026-74345

Source
https://cve.org/CVERecord?id=CVE-2026-74345
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74345.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-74345
Downstream
Published
2026-08-15T05:58:33.906Z
Modified
2026-08-18T03:56:56.948664161Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
RDMA/siw: Fix endpoint/socket association handling
Details

In the Linux kernel, the following vulnerability has been resolved:

RDMA/siw: Fix endpoint/socket association handling

Disassociating a socket from an endpoint via siwsocketdisassoc() may release the last reference on that endpoint and free it. Therefore, don't clear the endpoints socket pointer after calling that function, but within.

This fixes a:

BUG: KASAN: slab-use-after-free in siwcmworkhandler (drivers/infiniband/sw/siw/siwcm.c:1053 drivers/infiniband/sw/siw/siw_cm.c:1075)

which occurred after processing a malformed MPA request during connection establishment, causing the new endpoint to be closed.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/74xxx/CVE-2026-74345.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6c52fdc244b5ccc468006fd65a504d4ee33743c7
Fixed
b28d513393f81e2de00f82970487a9d001557e4e
Fixed
f6183983ce1ff254d629a333739082b39d7c5eb6
Fixed
b6cf763eee0a932792bef64ceaca568d324192fc
Fixed
ea4f6f6c53577fb3f05dbd78b15e586772d49831

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74345.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.3.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74345.json"