๐Ÿ” CVE Alert

CVE-2026-64534

UNKNOWN 0.0

nvmet-tcp: check INIT_FAILED before nvmet_req_uninit in digest error path

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: check INIT_FAILED before nvmet_req_uninit in digest error path In nvmet_tcp_try_recv_ddgst(), when a data digest mismatch is detected, nvmet_req_uninit() is called unconditionally. However, if the command arrived via the nvmet_tcp_handle_req_failure() path, nvmet_req_init() had returned false and percpu_ref_tryget_live() was never executed. The unconditional percpu_ref_put() inside nvmet_req_uninit() then causes a refcount underflow, leading to a WARNING in percpu_ref_switch_to_atomic_rcu, a use-after-free diagnostic, and eventually a permanent workqueue deadlock. Check cmd->flags & NVMET_TCP_F_INIT_FAILED before calling nvmet_req_uninit(), matching the existing pattern in nvmet_tcp_execute_request().

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 27, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 22ec7a9fe9153d2737ee9b2fa6d2e43a1491decf 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < ba35b1c674ca3841c0dfadd698f2c1b3ec542d4e 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < c7874dad84b20433c0fe3919f291a762d40de08b 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < e602c93b25bda4a9d0ff1791a4bdbfdcbb074af1 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d306da8833e75f669d93424fd84940236f3850bc 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 2ed3c9d955e8cd6361f130623baa664a75fb345f 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 4606467a75cfc16721937272ed29462a750b60c8 0 < 5.10.261 0 < 5.15.212 0 < 6.1.178 0 < 6.6.145 0 < 6.12.97 0 < 6.18.40
Linux / Linux
All versions affected

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/22ec7a9fe9153d2737ee9b2fa6d2e43a1491decf git.kernel.org: https://git.kernel.org/stable/c/ba35b1c674ca3841c0dfadd698f2c1b3ec542d4e git.kernel.org: https://git.kernel.org/stable/c/c7874dad84b20433c0fe3919f291a762d40de08b git.kernel.org: https://git.kernel.org/stable/c/e602c93b25bda4a9d0ff1791a4bdbfdcbb074af1 git.kernel.org: https://git.kernel.org/stable/c/d306da8833e75f669d93424fd84940236f3850bc git.kernel.org: https://git.kernel.org/stable/c/2ed3c9d955e8cd6361f130623baa664a75fb345f git.kernel.org: https://git.kernel.org/stable/c/4606467a75cfc16721937272ed29462a750b60c8