CVE-2026-97413
CVE CVE-2026-97413EUVD EUVD-2026-86026Published 2026-09-24T16:03:21.000ZLast changed 2026-09-25T12:43:48.000ZCVSS 9.8
What the advisory describes
In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-srv: Fix integer underflow in process_read and process_write usr_len is read from a network-supplied message field (le16_to_cpu) and used to compute data_len = off - usr_len without validating that usr_len <= off. A malicious RDMA client can send usr_len > off causing an integer underflow, resulting in data_len wrapping to a huge size_t value which is then passed to the rdma_ev callback as a memory length, leading to out-of-bounds memory access. Fix by reading and validating usr_len <= off before rtrs_srv_get_ops_ids() in both process_read() and process_write(), ensuring the early return path acquires no reference and has no resource leak.
Source: EUVD (ENISA), in the words of the advisory.
Products the advisory names
These come from the advisory itself, not from any check we performed.
- Linux — Linux 9cb837480424e78ed585376f944088246685aec3 <24ad03bfeda05fca04c56677e57fd3d6bc3e9978; patch: 6.18.53; 5.8; patch: 0; patch: 6.12.111; 9cb837480424e78ed585376f944088246685aec3 <c76e9123ab91a903396d26e6ab1b5caae5c6b149; patch: 7.2; 9cb837480424e78ed585376f944088246685aec3 <54bf38b27afc08a0eb6b732f9c14eb8a4bcb66b5
The versions shown are the advisory's own. Patchlage compares no version numbers and derives no judgement from them — which version is installed is something a person has to look up.
Carried in the product catalogue
An estate covering these products can be recorded in Patchlage. An advisory about them appears in the next morning's situation report.
- Linux — Linux
Does this concern one of your customers?
This page cannot answer that — it does not know your estate. Whoever has recorded their environments gets the answer the morning after publication, together with a paragraph they can forward to the customer unedited.
Try it for 28 daysPatchlage reports hits and suspected hits. About everything else this system says nothing — neither this page nor the situation report ever claims that an estate is safe.