VYPR
High severity7.8NVD Advisory· Published Aug 10, 2026· Updated Aug 19, 2026

CVE-2026-68417

CVE-2026-68417

Description

In the Linux kernel, the following vulnerability has been resolved:

RDMA/siw: publish QP after initialization

siw_create_qp() currently calls siw_qp_add() before the queues, CQ pointers, state, completion, and device list entry are ready. A QPN lookup can therefore reach a QP that is still being constructed.

Move siw_qp_add() to the end of siw_create_qp(), after QP initialization and before adding the QP to the siw device list.

Affected products

3

Patches

Vulnerability mechanics

References

7

News mentions

2