๐Ÿ” CVE Alert

CVE-2026-93782

UNKNOWN 0.0

vhost-scsi: flush backend after device ioctls

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: vhost-scsi: flush backend after device ioctls vhost-scsi translates guest response descriptors into userspace iovecs when commands are submitted. Target-core completes those commands asynchronously, so VHOST_SET_MEM_TABLE can replace the memory table while an in-flight command still retains response iovecs translated through the old table. If the old mapping is reused after VHOST_SET_MEM_TABLE returns, command completion can write the response to an unrelated userspace object. Flush the vhost-scsi backend after vhost_dev_ioctl() handles a device ioctl. This waits for in-flight commands that can still use the old response iovecs before the ioctl returns.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 24, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 981c97d09c6b9560bb12dcc41f11ce59b1a48e97 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 6c1b802e36b05ebd9d41686c4dce6f06966af469 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 22598f55a4c2b510b3df5e69e563387a963222ae 0 < 6.12.111 0 < 6.18.53
Linux / Linux
All versions affected

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/981c97d09c6b9560bb12dcc41f11ce59b1a48e97 git.kernel.org: https://git.kernel.org/stable/c/6c1b802e36b05ebd9d41686c4dce6f06966af469 git.kernel.org: https://git.kernel.org/stable/c/22598f55a4c2b510b3df5e69e563387a963222ae