CVE-2026-93102

Source
https://cve.org/CVERecord?id=CVE-2026-93102
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-93102.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-93102
Downstream
Published
2026-09-17T16:11:14Z
Modified
2026-09-19T03:47:26Z
Summary
RDMA/hfi1: Free RX data on late probe failure
Details

In the Linux kernel, the following vulnerability has been resolved:

RDMA/hfi1: Free RX data on late probe failure

hfi1_init_dd() allocates the shared AIP/VNIC RX support before returning. If hfi1_init() or hfi1_register_ib_device() later fails, init_one() tears down the device data without calling hfi1_free_rx(). This leaks netdev_rx and its dummy netdev.

Free the RX support after IB unregistration and before postinit_cleanup(), as done on normal device removal.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/93xxx/CVE-2026-93102.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4730f4a6c6b2065589c0822af00aa45e639bbc36
Fixed
cfad037c6d305876b877abc39fd4d7e2185e44f3
Fixed
d1c91cb02e05fdd93411de707cc5c3c08375df9e
Fixed
10e5e37495096b58f07adc4020de2701efc3a9e0
Fixed
cd06c17afb08b37995f66cf560c2332a769b8f80
Fixed
149a14ec70887ad14e820a7ca15738ded3d2d493
Fixed
83fe4e4f4fbf01d3832a24511c0ddfaccf5df9d8
Fixed
8e17e101e04a3dc062e2719da57ff78c1c060632

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-93102.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.8.0
Fixed
5.15.221
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.188
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.157
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.110
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.52
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-93102.json"