VYPR
High severity8.8NVD Advisory· Published Jun 25, 2026· Updated Jul 6, 2026

CVE-2026-53188

CVE-2026-53188

Description

In the Linux kernel, the following vulnerability has been resolved:

RDMA/core: Validate the passed in fops for ib_get_ucaps()

Sashiko pointed out it is not safe to rely only on the devt because char/block alias so if the user finds a block device with the same dev_t it can masquerade as a ucap cdev fd.

Test the f_ops to only accept authentic cdevs.

Affected products

18

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.