In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix use-after-free of work objects after cm_id destruction The commit 59c68ac31e15 ("iw_cm: free cm_id resources on th…
Critical CVSS 9.8
Summary
In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix use-after-free of work objects after cm_id destruction The commit 59c68ac31e15 ("iw_cm: free cm_id resources on the last deref") simplified cm_id resource management by freeing cm_id once all references to the cm_id were removed. The references are removed either upon completion of iw_cm event handlers or when the application destroys the cm_id. This commit introduced the use-after-free condition where cm_id_pr…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/013dcdf6f03bcedbaf1669e3db71c34a197715b2 Patch
- https://git.kernel.org/stable/c/23a707bbcbea468eedb398832eeb7e8e0ceafd21 Patch
- https://git.kernel.org/stable/c/3b4a50d733acad6831f6bd9288a76a80f70650ac Patch
- https://git.kernel.org/stable/c/6883b680e703c6b2efddb4e7a8d891ce1803d06b Patch
- https://git.kernel.org/stable/c/764c9f69beabef8bdc651a7746c59f7a340d104f Patch
- https://git.kernel.org/stable/c/78381dc8a6b61c9bb9987d37b4d671b99767c4a1 Patch
- https://git.kernel.org/stable/c/bf7eff5e3a36c54bbe8aff7fd6dd7c07490b81c5 Patch
- https://git.kernel.org/stable/c/fd960b5ddf4faf00da43babdd3acda68842e1f6a Patch
- https://lists.debian.org/debian-lts-announce/2025/10/msg00007.html Mailing List
- https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html Mailing List
Timeline
- nvd_ingest NVD