CVE-2026-68418
CVE CVE-2026-68418EUVD EUVD-2026-55604Published 2026-08-10T12:04:38.000Z
What the advisory describes
In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Prevent user-triggered null deref on QP create Previously, the user QP creation path would only attempt to populate iwqp->iwpbl if the user-provided req.user_wqe_bufs field was non-zero. The problem is that iwqp->iwpbl is unconditionally dereferenced later on in irdma_setup_virt_qp. While there was a check for iwqp->iwpbl != NULL, this check would only occur if req.user_wqe_bufs was non-zero. The end result is that a user could send a zero user_wqe_bufs value and trigger a null ptr deref. Fix this by unconditionally calling irdma_get_pbl and bailing if it fails, similar to the CQ and SRQ paths.
Source: EUVD (ENISA), in the words of the advisory.
Products the advisory names
These come from the advisory itself, not from any check we performed.
- Linux — Linux b48c24c2d710cf34810c555dcef883a3d35a9c08 <b9b0889071569d43623c260074e159cd8f26adb1; b48c24c2d710cf34810c555dcef883a3d35a9c08 <ec675b4cdfd378d8c9dd8c93126c024f2469bd79; patch: 0; 5.14; patch: 7.2-rc4; b48c24c2d710cf34810c555dcef883a3d35a9c08 <728211c815f6eef28dd3df2a5b6297483185aa20; patch: 6.18.42; patch: 7.1.6
The versions shown are the advisory's own. Patchlage compares no version numbers and derives no judgement from them — which version is installed is something a person has to look up.
Carried in the product catalogue
An estate covering these products can be recorded in Patchlage. An advisory about them appears in the next morning's situation report.
- Linux — Linux
Does this concern one of your customers?
This page cannot answer that — it does not know your estate. Whoever has recorded their environments gets the answer the morning after publication, together with a paragraph they can forward to the customer unedited.
Try it for 28 daysPatchlage reports hits and suspected hits. About everything else this system says nothing — neither this page nor the situation report ever claims that an estate is safe.