{"api_version":"1","generated_at":"2026-09-17T23:44:40+00:00","cve":"CVE-2026-93158","urls":{"html":"https://cve.report/CVE-2026-93158","api":"https://cve.report/api/cve/CVE-2026-93158.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2026-93158","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2026-93158"},"summary":{"title":"crypto: sa2ul - stop probe if context pool creation fails","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: sa2ul - stop probe if context pool creation fails\n\nsa_ul_probe() calls sa_init_mem() to create the DMA pool used for\nsecurity context buffers, but ignores its return value. If pool creation\nfails, probe still continues with DMA setup, algorithm registration and\nchild population even though later request setup depends on that pool.\n\nStop probing when sa_init_mem() fails, and route that failure to the PM\ncleanup path without attempting to destroy an uncreated DMA pool.","state":"PUBLISHED","assigner":"Linux","published_at":"2026-09-17 17:18:11","updated_at":"2026-09-17 17:18:11"},"problem_types":[],"metrics":[],"references":[{"url":"https://git.kernel.org/stable/c/91ded4742fcde6ad415c4d8a20e5ea0dcdf4f73e","name":"https://git.kernel.org/stable/c/91ded4742fcde6ad415c4d8a20e5ea0dcdf4f73e","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/304dcd26bfc3ce6771c2bd3b7c0299dcfd5f4e06","name":"https://git.kernel.org/stable/c/304dcd26bfc3ce6771c2bd3b7c0299dcfd5f4e06","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/9a692a6a2b47328a36c8d80c7fbf81da16b6d6b1","name":"https://git.kernel.org/stable/c/9a692a6a2b47328a36c8d80c7fbf81da16b6d6b1","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/9907426b438e4dbc8c45138bd440ad6d732d80b7","name":"https://git.kernel.org/stable/c/9907426b438e4dbc8c45138bd440ad6d732d80b7","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/04c46784ec249cac995e31f0691397b82bdaa5fd","name":"https://git.kernel.org/stable/c/04c46784ec249cac995e31f0691397b82bdaa5fd","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/f72c7837614a9705f8b3021828d49c9f095803ba","name":"https://git.kernel.org/stable/c/f72c7837614a9705f8b3021828d49c9f095803ba","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/d03f980a25853f6a380895119a572a3bb1194e8d","name":"https://git.kernel.org/stable/c/d03f980a25853f6a380895119a572a3bb1194e8d","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/b68b35ed97d3e18edb9dea500d88420a95006742","name":"https://git.kernel.org/stable/c/b68b35ed97d3e18edb9dea500d88420a95006742","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-93158","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-93158","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 7694b6ca649fead1a57046935711bc82dfc78cfb 304dcd26bfc3ce6771c2bd3b7c0299dcfd5f4e06 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 7694b6ca649fead1a57046935711bc82dfc78cfb 9907426b438e4dbc8c45138bd440ad6d732d80b7 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 7694b6ca649fead1a57046935711bc82dfc78cfb 9a692a6a2b47328a36c8d80c7fbf81da16b6d6b1 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 7694b6ca649fead1a57046935711bc82dfc78cfb 04c46784ec249cac995e31f0691397b82bdaa5fd git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 7694b6ca649fead1a57046935711bc82dfc78cfb f72c7837614a9705f8b3021828d49c9f095803ba git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 7694b6ca649fead1a57046935711bc82dfc78cfb 91ded4742fcde6ad415c4d8a20e5ea0dcdf4f73e git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 7694b6ca649fead1a57046935711bc82dfc78cfb b68b35ed97d3e18edb9dea500d88420a95006742 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 7694b6ca649fead1a57046935711bc82dfc78cfb d03f980a25853f6a380895119a572a3bb1194e8d git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 5.9","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 5.9 semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 5.10.270 5.10.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 5.15.221 5.15.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.1.188 6.1.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.6.157 6.6.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.12.110 6.12.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.18.52 6.18.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 7.2.6 7.2.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 7.3-rc1 * original_commit_for_fix","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"cna":{"affected":[{"defaultStatus":"unaffected","product":"Linux","programFiles":["drivers/crypto/sa2ul.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","vendor":"Linux","versions":[{"lessThan":"304dcd26bfc3ce6771c2bd3b7c0299dcfd5f4e06","status":"affected","version":"7694b6ca649fead1a57046935711bc82dfc78cfb","versionType":"git"},{"lessThan":"9907426b438e4dbc8c45138bd440ad6d732d80b7","status":"affected","version":"7694b6ca649fead1a57046935711bc82dfc78cfb","versionType":"git"},{"lessThan":"9a692a6a2b47328a36c8d80c7fbf81da16b6d6b1","status":"affected","version":"7694b6ca649fead1a57046935711bc82dfc78cfb","versionType":"git"},{"lessThan":"04c46784ec249cac995e31f0691397b82bdaa5fd","status":"affected","version":"7694b6ca649fead1a57046935711bc82dfc78cfb","versionType":"git"},{"lessThan":"f72c7837614a9705f8b3021828d49c9f095803ba","status":"affected","version":"7694b6ca649fead1a57046935711bc82dfc78cfb","versionType":"git"},{"lessThan":"91ded4742fcde6ad415c4d8a20e5ea0dcdf4f73e","status":"affected","version":"7694b6ca649fead1a57046935711bc82dfc78cfb","versionType":"git"},{"lessThan":"b68b35ed97d3e18edb9dea500d88420a95006742","status":"affected","version":"7694b6ca649fead1a57046935711bc82dfc78cfb","versionType":"git"},{"lessThan":"d03f980a25853f6a380895119a572a3bb1194e8d","status":"affected","version":"7694b6ca649fead1a57046935711bc82dfc78cfb","versionType":"git"}]},{"defaultStatus":"affected","product":"Linux","programFiles":["drivers/crypto/sa2ul.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","vendor":"Linux","versions":[{"status":"affected","version":"5.9"},{"lessThan":"5.9","status":"unaffected","version":"0","versionType":"semver"},{"lessThanOrEqual":"5.10.*","status":"unaffected","version":"5.10.270","versionType":"semver"},{"lessThanOrEqual":"5.15.*","status":"unaffected","version":"5.15.221","versionType":"semver"},{"lessThanOrEqual":"6.1.*","status":"unaffected","version":"6.1.188","versionType":"semver"},{"lessThanOrEqual":"6.6.*","status":"unaffected","version":"6.6.157","versionType":"semver"},{"lessThanOrEqual":"6.12.*","status":"unaffected","version":"6.12.110","versionType":"semver"},{"lessThanOrEqual":"6.18.*","status":"unaffected","version":"6.18.52","versionType":"semver"},{"lessThanOrEqual":"7.2.*","status":"unaffected","version":"7.2.6","versionType":"semver"},{"lessThanOrEqual":"*","status":"unaffected","version":"7.3-rc1","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"cpeMatch":[{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"5.10.270","versionStartIncluding":"5.9","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"5.15.221","versionStartIncluding":"5.9","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.1.188","versionStartIncluding":"5.9","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.6.157","versionStartIncluding":"5.9","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.12.110","versionStartIncluding":"5.9","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.18.52","versionStartIncluding":"5.9","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"7.2.6","versionStartIncluding":"5.9","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"7.3-rc1","versionStartIncluding":"5.9","vulnerable":true}],"negate":false,"operator":"OR"}]}],"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: sa2ul - stop probe if context pool creation fails\n\nsa_ul_probe() calls sa_init_mem() to create the DMA pool used for\nsecurity context buffers, but ignores its return value. If pool creation\nfails, probe still continues with DMA setup, algorithm registration and\nchild population even though later request setup depends on that pool.\n\nStop probing when sa_init_mem() fails, and route that failure to the PM\ncleanup path without attempting to destroy an uncreated DMA pool."}],"providerMetadata":{"dateUpdated":"2026-09-17T16:11:53.144Z","orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux"},"references":[{"url":"https://git.kernel.org/stable/c/304dcd26bfc3ce6771c2bd3b7c0299dcfd5f4e06"},{"url":"https://git.kernel.org/stable/c/9907426b438e4dbc8c45138bd440ad6d732d80b7"},{"url":"https://git.kernel.org/stable/c/9a692a6a2b47328a36c8d80c7fbf81da16b6d6b1"},{"url":"https://git.kernel.org/stable/c/04c46784ec249cac995e31f0691397b82bdaa5fd"},{"url":"https://git.kernel.org/stable/c/f72c7837614a9705f8b3021828d49c9f095803ba"},{"url":"https://git.kernel.org/stable/c/91ded4742fcde6ad415c4d8a20e5ea0dcdf4f73e"},{"url":"https://git.kernel.org/stable/c/b68b35ed97d3e18edb9dea500d88420a95006742"},{"url":"https://git.kernel.org/stable/c/d03f980a25853f6a380895119a572a3bb1194e8d"}],"title":"crypto: sa2ul - stop probe if context pool creation fails","x_generator":{"engine":"bippy-1.2.0"}}},"cveMetadata":{"assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","assignerShortName":"Linux","cveId":"CVE-2026-93158","datePublished":"2026-09-17T16:11:53.144Z","dateReserved":"2026-09-17T16:02:15.089Z","dateUpdated":"2026-09-17T16:11:53.144Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.2"},"nvd":{"publishedDate":"2026-09-17 17:18:11","lastModifiedDate":"2026-09-17 17:18:11","problem_types":[],"metrics":[],"configurations":[]},"legacy_mitre":{"record":{"CveYear":"2026","CveId":"93158","Ordinal":"1","Title":"crypto: sa2ul - stop probe if context pool creation fails","CVE":"CVE-2026-93158","Year":"2026"},"notes":[{"CveYear":"2026","CveId":"93158","Ordinal":"1","NoteData":"In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: sa2ul - stop probe if context pool creation fails\n\nsa_ul_probe() calls sa_init_mem() to create the DMA pool used for\nsecurity context buffers, but ignores its return value. If pool creation\nfails, probe still continues with DMA setup, algorithm registration and\nchild population even though later request setup depends on that pool.\n\nStop probing when sa_init_mem() fails, and route that failure to the PM\ncleanup path without attempting to destroy an uncreated DMA pool.","Type":"Description","Title":"crypto: sa2ul - stop probe if context pool creation fails"}]}}}