目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2026-68417— RDMA/siw: 初始化后发布QP

AI Predicted 4.4 Difficulty: Hard

Possible ATT&CK Techniques 1AI

T1059 · Command and Scripting Interpreter

Affected Version Matrix 12

ベンダープロダクトVersion Rangeステータス
LinuxLinuxf29dd55b0236f7a26a4b9dd69186e3c04266797b< 36e91a58397ca8c978e38a0bf389f0c6113fa8caaffected
f29dd55b0236f7a26a4b9dd69186e3c04266797b< 74912ad168f87d6b2b670a87987bb302d6e64aa1affected
f29dd55b0236f7a26a4b9dd69186e3c04266797b< fcc9d50022bcdb1f9f7ed04955c72b4a7355af3daffected
f29dd55b0236f7a26a4b9dd69186e3c04266797b< 52f9fcb191143448df55fd215ff09c5207fed43eaffected
f29dd55b0236f7a26a4b9dd69186e3c04266797b< bb27fcc67c429d97f785c92c35a6c5adebb05d7faffected
5.3affected
< 5.3unaffected
6.6.148≤ 6.6.*unaffected
… +4 more rows
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2026-68417の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
RDMA/siw: publish QP after initialization
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: publish QP after initialization siw_create_qp() currently calls siw_qp_add() before the queues, CQ pointers, state, completion, and device list entry are ready. A QPN lookup can therefore reach a QP that is still being constructed. Move siw_qp_add() to the end of siw_create_qp(), after QP initialization and before adding the QP to the siw device list.
ソース: CVE Program / CVE List V5
CVSS情報
N/A
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux f29dd55b0236f7a26a4b9dd69186e3c04266797b ~ 36e91a58397ca8c978e38a0bf389f0c6113fa8ca -
LinuxLinux 5.3 -

II. CVE-2026-68417の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2026-68417のインテリジェンス情報

登录查看更多情报信息。

CVE-2026-68417 补丁与修复 (5)

Same Patch Batch · Linux · 2026-08-10 · 346 CVEs total

CVE-2026-68201ALSA: timer: drain a slave's callback before its master detaches it
CVE-2026-68191wifi: ath12k: fix NULL pointer dereference in rhash table destroy
CVE-2026-68192wifi: brcmfmac: make release_scratchbuffers idempotent
CVE-2026-68193wifi: mt76: mt7925: drop TXRX_NOTIFY on non-mmio buses
CVE-2026-68194wifi: mt76: mt7921: drop TXRX_NOTIFY on non-mmio buses
CVE-2026-68195wifi: mt76: mt7615: drop TXRX_NOTIFY on non-mmio buses
CVE-2026-68196wifi: wilc1000: validate assoc response length before subtracting header
CVE-2026-68197wifi: mwifiex: fix NULL dereference when the AP has HT-cap but no HT-oper
CVE-2026-68198wifi: ath6kl: fix use-after-free in aggr_reset_state()
CVE-2026-68199wifi: ath6kl: fix OOB access from firmware ADDBA window size
CVE-2026-68200ALSA: timer: don't re-enter an instance callback that is still running
CVE-2026-68206media: v4l2-ctrls: validate HEVC active reference counts
CVE-2026-68211media: stm32-dcmipp: Return queued buffers on start_streaming() failure
CVE-2026-68210media: stm32: dcmi: unregister notifier on probe failure
CVE-2026-68209media: sun4i-csi: Return queued buffers on start_streaming() failure
CVE-2026-68208media: ti: vpe: Fix the error code of devm_kzalloc() in vip_probe_slice()
CVE-2026-68207media: ti: vpe: unwind v4l2 device registration on probe error
CVE-2026-68204media: vivid: check for vb2_is_busy() when toggling caps
CVE-2026-68202ALSA: seq: close a re-opened queue timer in the destructor
CVE-2026-68203media: vivid: fix cleanup bugs in vivid_init()

Showing 20 of 346 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2026-68417へのコメント

まだコメントはありません


コメントを残す