Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-31565

Опубликовано: 24 апр. 2026
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix deadlock during netdev reset with active connections Resolve deadlock that occurs when user executes netdev reset while RDMA applications (e.g., rping) are active. The netdev reset causes ice driver to remove irdma auxiliary driver, triggering device_delete and subsequent client removal. During client removal, uverbs_client waits for QP reference count to reach zero while cma_client holds the final reference, creating circular dependency and indefinite wait in iWARP mode. Skip QP reference count wait during device reset to prevent deadlock.

A flaw was found in the Linux kernel's RDMA/irdma component. A local user can trigger a deadlock by performing a network device (netdev) reset while Remote Direct Memory Access (RDMA) applications are actively running, particularly in iWARP mode. This action creates a circular dependency during the removal of RDMA clients, causing an indefinite wait. This vulnerability can lead to a Denial of Service (DoS) condition, making the system unresponsive.

Отчет

A Moderate severity flaw was identified in the Linux kernel's RDMA/irdma component. This issue allows a local attacker to induce a denial of service by initiating a network device reset while RDMA applications are actively utilizing iWARP mode. This specific interaction can lead to a kernel deadlock, rendering the system unresponsive.

Меры по смягчению последствий

To mitigate this issue, if RDMA functionality is not required, the irdma kernel module can be blacklisted to prevent it from loading. This will disable RDMA capabilities provided by the irdma driver.

  1. Create a file named /etc/modprobe.d/blacklist-irdma.conf with the following content:
blacklist irdma
  1. Regenerate the initramfs to ensure the blacklist takes effect on boot. For Red Hat Enterprise Linux 8 and 9, use dracut -f -v. For Red Hat Enterprise Linux 7, use dracut -f.
  2. A system reboot is required for these changes to take full effect.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10kernelFix deferred
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise Linux 7kernel-rtNot affected
Red Hat Enterprise Linux 8kernelNot affected
Red Hat Enterprise Linux 8kernel-rtNot affected
Red Hat Enterprise Linux 9kernelFix deferred
Red Hat Enterprise Linux 9kernel-rtFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-911
https://bugzilla.redhat.com/show_bug.cgi?id=2461498kernel: RDMA/irdma: Fix deadlock during netdev reset with active connections

EPSS

Процентиль: 1%
0.00097
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix deadlock during netdev reset with active connections Resolve deadlock that occurs when user executes netdev reset while RDMA applications (e.g., rping) are active. The netdev reset causes ice driver to remove irdma auxiliary driver, triggering device_delete and subsequent client removal. During client removal, uverbs_client waits for QP reference count to reach zero while cma_client holds the final reference, creating circular dependency and indefinite wait in iWARP mode. Skip QP reference count wait during device reset to prevent deadlock.

CVSS3: 5.5
nvd
3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix deadlock during netdev reset with active connections Resolve deadlock that occurs when user executes netdev reset while RDMA applications (e.g., rping) are active. The netdev reset causes ice driver to remove irdma auxiliary driver, triggering device_delete and subsequent client removal. During client removal, uverbs_client waits for QP reference count to reach zero while cma_client holds the final reference, creating circular dependency and indefinite wait in iWARP mode. Skip QP reference count wait during device reset to prevent deadlock.

CVSS3: 5.5
msrc
3 месяца назад

RDMA/irdma: Fix deadlock during netdev reset with active connections

CVSS3: 5.5
debian
3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: R ...

CVSS3: 5.5
github
3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix deadlock during netdev reset with active connections Resolve deadlock that occurs when user executes netdev reset while RDMA applications (e.g., rping) are active. The netdev reset causes ice driver to remove irdma auxiliary driver, triggering device_delete and subsequent client removal. During client removal, uverbs_client waits for QP reference count to reach zero while cma_client holds the final reference, creating circular dependency and indefinite wait in iWARP mode. Skip QP reference count wait during device reset to prevent deadlock.

EPSS

Процентиль: 1%
0.00097
Низкий

5.5 Medium

CVSS3