RDMA/hfi1: Propagate sdma_txinit_ahg() errors
Summary
| CVE | CVE-2026-93037 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-09-17 17:17:56 UTC |
| Updated | 2026-09-18 18:18:18 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: RDMA/hfi1: Propagate sdma_txinit_ahg() errors set_txreq_header_ahg() ignores the return value of sdma_txinit_ahg(). If sdma_txinit_ahg() fails, it returns before initializing tx->txreq. However, set_txreq_header_ahg() ignores the error and returns the AHG change count, causing the caller to continue processing the request as though initialization had succeeded. Propagate sdma_txinit_ahg() failures to the caller and abort request processing when initialization fails. Found by Linux Verification Center (linuxtesting.org) with SVACE. |
Risk And Classification
Primary CVSS: v3.1 7.8 HIGH from 416baaa9-dc9f-4396-8d5f-8c081fb06d67
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS: 0.001640000 probability, percentile 0.060160000 (date 2026-09-21)
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | Secondary | 7.8 | HIGH | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| 3.1 | CNA | DECLARED | 7.8 | HIGH | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
CVSS v3.1 Breakdown
Attack Vector
LocalAttack Complexity
LowPrivileges Required
LowUser Interaction
NoneScope
UnchangedConfidentiality
HighIntegrity
HighAvailability
HighCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected e3304b7cc4f14d365f46d6847a35563ae8b017f7 cb73c2fe6e9cf563c99f22b7c8bca0d5f70d603e git | Not specified |
| CNA | Linux | Linux | affected e3304b7cc4f14d365f46d6847a35563ae8b017f7 122a730675565ff2ad210537c3fc3afb8291d482 git | Not specified |
| CNA | Linux | Linux | affected e3304b7cc4f14d365f46d6847a35563ae8b017f7 bf974994150cfd14bfc599748925f4d426e00d90 git | Not specified |
| CNA | Linux | Linux | affected e3304b7cc4f14d365f46d6847a35563ae8b017f7 fd6dee13f3857259b6b2ddd28e1ed95fd94ae2f9 git | Not specified |
| CNA | Linux | Linux | affected e3304b7cc4f14d365f46d6847a35563ae8b017f7 5b7cefffd15d87c8103865f887cdcf9077d8094b git | Not specified |
| CNA | Linux | Linux | affected e3304b7cc4f14d365f46d6847a35563ae8b017f7 3416db552eb378e54cb2f2ce0db5f0df88654bda git | Not specified |
| CNA | Linux | Linux | affected e3304b7cc4f14d365f46d6847a35563ae8b017f7 ca99431820e8cac19f6a091c04da54cbe8d64f52 git | Not specified |
| CNA | Linux | Linux | affected e3304b7cc4f14d365f46d6847a35563ae8b017f7 091c6162c022cbdfb64219708a71728cfd1d4600 git | Not specified |
| CNA | Linux | Linux | affected 4.14 | Not specified |
| CNA | Linux | Linux | unaffected 4.14 semver | Not specified |
| CNA | Linux | Linux | unaffected 5.10.270 5.10.* semver | Not specified |
| CNA | Linux | Linux | unaffected 5.15.221 5.15.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1.188 6.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.6.157 6.6.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.12.110 6.12.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.18.52 6.18.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.2.6 7.2.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.3-rc1 * original_commit_for_fix | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| git.kernel.org/stable/c/3416db552eb378e54cb2f2ce0db5f0df88654bda | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/091c6162c022cbdfb64219708a71728cfd1d4600 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/fd6dee13f3857259b6b2ddd28e1ed95fd94ae2f9 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/bf974994150cfd14bfc599748925f4d426e00d90 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/122a730675565ff2ad210537c3fc3afb8291d482 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/5b7cefffd15d87c8103865f887cdcf9077d8094b | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/cb73c2fe6e9cf563c99f22b7c8bca0d5f70d603e | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/ca99431820e8cac19f6a091c04da54cbe8d64f52 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.