CVE-2026-93103
In the Linux kernel, the following vulnerability has been resolved:
RDMA/hfi1: Preserve unit 0 on allocation failure
hfi1_free_devdata() assumes that the device was inserted into the unit table and unconditionally erases dd->unit. If xa_alloc_irq() fails, the zero-initialized unit remains zero, so full cleanup can remove an unrelated device from index 0.
Release only the rdmavt allocation and return immediately while the unit table has not acquired the device.
CVSS
NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.18%
- Percentil entre todas las CVEs puntuadas: 7
- Fecha de la puntuación: 5/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.
Referencias
- https://git.kernel.org/stable/c/0feb29d434e6cc0ebefec4f77be014c85ad751b0
- https://git.kernel.org/stable/c/2e3809ad8911f5d5581b3f046bd628417bface76
- https://git.kernel.org/stable/c/3d0e5252b8d0345ef494763ca31e3ddd666e02cb
- https://git.kernel.org/stable/c/3f1e196eb66b8cd3882e373794d6cea46f150a20
- https://git.kernel.org/stable/c/4204f5c0312ba136181a6e148ffa0bfaf95a4cc1
- https://git.kernel.org/stable/c/4ff9d58d34758e9633078b37e8d5289b513ff80e
- https://git.kernel.org/stable/c/852637d3ee56aed8ea3ee8948eda21eca406c051
- https://git.kernel.org/stable/c/fd4d3ad5f244a867166d1e2da7ece3d82878ec81
JSON original (NVD)
Mostrar
{
"id": "CVE-2026-93103",
"cveTags": [],
"metrics": {},
"affected": [
{
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"affectedData": [
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "03b92789e5cfdac66805c1a98f1ec67336199d56",
"lessThan": "852637d3ee56aed8ea3ee8948eda21eca406c051",
"versionType": "git"
},
{
"status": "affected",
"version": "03b92789e5cfdac66805c1a98f1ec67336199d56",
"lessThan": "3d0e5252b8d0345ef494763ca31e3ddd666e02cb",
"versionType": "git"
},
{
"status": "affected",
"version": "03b92789e5cfdac66805c1a98f1ec67336199d56",
"lessThan": "0feb29d434e6cc0ebefec4f77be014c85ad751b0",
"versionType": "git"
},
{
"status": "affected",
"version": "03b92789e5cfdac66805c1a98f1ec67336199d56",
"lessThan": "3f1e196eb66b8cd3882e373794d6cea46f150a20",
"versionType": "git"
},
{
"status": "affected",
"version": "03b92789e5cfdac66805c1a98f1ec67336199d56",
"lessThan": "4ff9d58d34758e9633078b37e8d5289b513ff80e",
"versionType": "git"
},
{
"status": "affected",
"version": "03b92789e5cfdac66805c1a98f1ec67336199d56",
"lessThan": "fd4d3ad5f244a867166d1e2da7ece3d82878ec81",
"versionType": "git"
},
{
"status": "affected",
"version": "03b92789e5cfdac66805c1a98f1ec67336199d56",
"lessThan": "4204f5c0312ba136181a6e148ffa0bfaf95a4cc1",
"versionType": "git"
},
{
"status": "affected",
"version": "03b92789e5cfdac66805c1a98f1ec67336199d56",
"lessThan": "2e3809ad8911f5d5581b3f046bd628417bface76",
"versionType": "git"
}
],
"programFiles": [
"drivers/infiniband/hw/hfi1/init.c"
],
"defaultStatus": "unaffected"
},
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "5.2"
},
{
"status": "unaffected",
"version": "0",
"lessThan": "5.2",
"versionType": "semver"
},
{
"status": "unaffected",
"version": "5.10.270",
"versionType": "semver",
"lessThanOrEqual": "5.10.*"
},
{
"status": "unaffected",
"version": "5.15.221",
"versionType": "semver",
"lessThanOrEqual": "5.15.*"
},
{
"status": "unaffected",
"version": "6.1.188",
"versionType": "semver",
"lessThanOrEqual": "6.1.*"
},
{
"status": "unaffected",
"version": "6.6.157",
"versionType": "semver",
"lessThanOrEqual": "6.6.*"
},
{
"status": "unaffected",
"version": "6.12.110",
"versionType": "semver",
"lessThanOrEqual": "6.12.*"
},
{
"status": "unaffected",
"version": "6.18.52",
"versionType": "semver",
"lessThanOrEqual": "6.18.*"
},
{
"status": "unaffected",
"version": "7.2.6",
"versionType": "semver",
"lessThanOrEqual": "7.2.*"
},
{
"status": "unaffected",
"version": "7.3-rc1",
"versionType": "original_commit_for_fix",
"lessThanOrEqual": "*"
}
],
"programFiles": [
"drivers/infiniband/hw/hfi1/init.c"
],
"defaultStatus": "affected"
}
]
}
],
"published": "2026-09-17T17:18:04.607",
"references": [
{
"url": "https://git.kernel.org/stable/c/0feb29d434e6cc0ebefec4f77be014c85ad751b0",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/2e3809ad8911f5d5581b3f046bd628417bface76",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/3d0e5252b8d0345ef494763ca31e3ddd666e02cb",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/3f1e196eb66b8cd3882e373794d6cea46f150a20",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/4204f5c0312ba136181a6e148ffa0bfaf95a4cc1",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/4ff9d58d34758e9633078b37e8d5289b513ff80e",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/852637d3ee56aed8ea3ee8948eda21eca406c051",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/fd4d3ad5f244a867166d1e2da7ece3d82878ec81",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}
],
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/hfi1: Preserve unit 0 on allocation failure\n\nhfi1_free_devdata() assumes that the device was inserted into the unit\ntable and unconditionally erases dd->unit. If xa_alloc_irq() fails, the\nzero-initialized unit remains zero, so full cleanup can remove an\nunrelated device from index 0.\n\nRelease only the rdmavt allocation and return immediately while the unit\ntable has not acquired the device."
}
],
"lastModified": "2026-09-17T17:18:04.607",
"sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}