CVE-2026-89510
Received Received - Intake

RDMA cxgb4 Device Registration Work Cancellation Vulnerability

Vulnerability report for CVE-2026-89510, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-11

Last updated on: 2026-09-14

Assigner: kernel.org

Description

In the Linux kernel, the following vulnerability has been resolved: RDMA/cxgb4: Cancel reg_work before freeing device on remove c4iw_uld_state_change() queues reg_work to register the RDMA device. c4iw_remove() can free ctx->dev while this work is pending or running, leaving c4iw_register_device() accessing the freed device. Cancel reg_work before removing the device. The registration work can tear down ctx->dev when registration fails, so do not unregister or deallocate it again in that case. This issue was found by an in-house static analysis tool.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-11
Last Modified
2026-09-14
Generated
2026-10-02
AI Q&A
2026-09-12
EPSS Evaluated
2026-09-29
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
linux linux_kernel *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is a Linux kernel vulnerability where a race condition occurs during device removal. The c4iw_remove() function may free a device while a pending work item (reg_work) is still trying to register it via c4iw_uld_state_change(). This leads to the freed device being accessed, causing potential crashes or undefined behavior.

Detection Guidance

This vulnerability is specific to the Linux kernel's RDMA/cxgb4 driver and involves a race condition during device removal. Detection requires checking kernel logs for errors related to RDMA device registration or removal, such as warnings about accessing freed memory or work queue issues.

Impact Analysis

If exploited, this could cause system instability, crashes, or denial of service in systems using the affected RDMA/cxgb4 driver. It may also lead to data corruption or unauthorized access in rare cases where memory corruption occurs.

Compliance Impact

This vulnerability does not directly affect compliance with GDPR, HIPAA, or similar standards as it pertains to a Linux kernel RDMA driver issue. Compliance impacts would depend on system-specific configurations and usage rather than the vulnerability itself.

Mitigation Strategies

Update the Linux kernel to a patched version that includes the fix for this issue. Monitor kernel logs for RDMA-related errors and ensure the cxgb4 driver is functioning correctly after updates.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-89510. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart