CVE-2026-98217

Source
https://cve.org/CVERecord?id=CVE-2026-98217
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98217.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-98217
Downstream
Published
2026-10-06T08:44:53Z
Modified
2026-10-07T02:47:29Z
Summary
IB/mlx4: Fix use-after-free on pkey sysfs registration failure
Details

In the Linux kernel, the following vulnerability has been resolved:

IB/mlx4: Fix use-after-free on pkey sysfs registration failure

register_pkey_tree() ignores errors from register_one_pkey_tree() and continues registering the remaining slaves. The per-slave error path has already released the pkey parent kobjects, but their pointers remain stored in the device. A later device cleanup therefore passes the stale pointers to kobject_put(), causing a use-after-free.

Clear the parent pointers after releasing a failed slave tree and skip unregistered trees during device cleanup. This preserves the existing best-effort registration behavior while preventing a second cleanup of the failed tree.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/98xxx/CVE-2026-98217.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c1e7e466120b80ce49e91af0c9da1ce6dee4844a
Fixed
791471421d848ce13e84f4b21c9e19973d471c4e
Fixed
734f066933484f6c7cedea0312763249beed5845
Fixed
a07bee32127d7c4cd3b1bb9a088e21d0c93634c9
Fixed
cf20d7476754c00eec04ae23d3e929de33ce0345
Fixed
0c3482e965b18bc242e54e899d1c4d391ca8e5e3
Fixed
ffb80872617b5f9b3dd1536ec2909029fa66f228
Fixed
ced1186fea7c77e16681c7ef4802897885989c3b
Fixed
1af874e9f4ce22ccf8b10ab5462f32c70d3be21a

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98217.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.7.0
Fixed
5.10.271
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.222
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.189
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.158
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.112
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.54
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98217.json"