« Volver al listado

CVE-2026-90412

Estado: RecibidaSin puntuar—

In the Linux kernel, the following vulnerability has been resolved:

nvmet: fix return status of RMI log page on allocation failure

nvmet_execute_get_log_page_rmi() leaves 'status' holding NVME_SC_SUCCESS (set by the successful nvmet_req_find_ns() call) when the kzalloc() for the log buffer fails. It then jumps to the out label and completes the request with a success status, so the host is told the command succeeded while no data was transferred.

Initialize 'status' to NVME_SC_INTERNAL, matching the smart log handler, so an allocation failure is reported as an internal error.

CVSS

NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-90412",
  "cveTags": [],
  "metrics": {},
  "affected": [
    {
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
      "affectedData": [
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "5fd075cdaf3649000677d960fd9e45c08081b7e0",
              "lessThan": "9e136150ac55df4b7ea36e6110ffa39d08905f37",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "5fd075cdaf3649000677d960fd9e45c08081b7e0",
              "lessThan": "581d8bb556dd3e5567bcf322aa5e3e4b6a200c08",
              "versionType": "git"
            }
          ],
          "programFiles": [
            "drivers/nvme/target/admin-cmd.c"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "6.13"
            },
            {
              "status": "unaffected",
              "version": "0",
              "lessThan": "6.13",
              "versionType": "semver"
            },
            {
              "status": "unaffected",
              "version": "7.2.6",
              "versionType": "semver",
              "lessThanOrEqual": "7.2.*"
            },
            {
              "status": "unaffected",
              "version": "7.3-rc1",
              "versionType": "original_commit_for_fix",
              "lessThanOrEqual": "*"
            }
          ],
          "programFiles": [
            "drivers/nvme/target/admin-cmd.c"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2026-09-17T17:17:43.000",
  "references": [
    {
      "url": "https://git.kernel.org/stable/c/581d8bb556dd3e5567bcf322aa5e3e4b6a200c08",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/9e136150ac55df4b7ea36e6110ffa39d08905f37",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    }
  ],
  "vulnStatus": "Received",
  "descriptions": [
    {
      "lang": "en",
      "value": "In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet: fix return status of RMI log page on allocation failure\n\nnvmet_execute_get_log_page_rmi() leaves 'status' holding NVME_SC_SUCCESS\n(set by the successful nvmet_req_find_ns() call) when the kzalloc() for\nthe log buffer fails. It then jumps to the out label and completes the\nrequest with a success status, so the host is told the command succeeded\nwhile no data was transferred.\n\nInitialize 'status' to NVME_SC_INTERNAL, matching the smart log handler,\nso an allocation failure is reported as an internal error."
    }
  ],
  "lastModified": "2026-09-17T17:17:43.000",
  "sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}