CVE-2026-74385

Source
https://cve.org/CVERecord?id=CVE-2026-74385
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74385.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-74385
Downstream
Published
2026-08-15T05:59:01.113Z
Modified
2026-08-16T03:48:49.877101374Z
Summary
nvmet-tcp: check return value of nvmet_tcp_set_queue_sock
Details

In the Linux kernel, the following vulnerability has been resolved:

nvmet-tcp: check return value of nvmettcpsetqueuesock

The return value of nvmettcpsetqueuesock() is currently ignored in nvmettcptlshandshakedone(). If it fails (e.g., due to the socket not being in TCP_ESTABLISHED state), the socket callbacks will not be properly set, leading to queue and socket leakage.

Fix this by capturing the return value and calling nvmettcpschedulereleasequeue() on failure to ensure proper cleanup.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/74xxx/CVE-2026-74385.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
675b453e024154dd547921c6e6d5b58747ba7e0e
Fixed
cba2ee57fd302727aea7d41e9d9cd0969f5df0fb
Fixed
22aa70f9a0544643ec37d442b6fcb1833d804462
Fixed
7ef789703e2b91775dcb36b2efa46325be31a2a0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74385.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74385.json"