CVE-2026-98004

Source
https://cve.org/CVERecord?id=CVE-2026-98004
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98004.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-98004
Downstream
Published
2026-09-25T10:23:31Z
Modified
2026-09-26T03:48:31Z
Summary
iommu/riscv: Serialize command queue publishing
Details

In the Linux kernel, the following vulnerability has been resolved:

iommu/riscv: Serialize command queue publishing

Serialize command queue publishing so software producer state advances only after a command is written and the hardware tail is updated. Wait for hardware consumption outside the queue lock when the command queue is full so other CPUs are not blocked behind a long poll.

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/98xxx/CVE-2026-98004.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
856c0cfe5c5f6a2cc8d995872eb67bff9c68c57c
Fixed
6d4c12ab9ab8db87411c863a54e0e97f9197afde
Fixed
ca58afa40946acd252a50fa4d4a86f15847a3d7d

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98004.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
7.2.7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98004.json"