CVE-2026-31565 (GCVE-0-2026-31565)
Vulnerability from cvelistv5
Published
2026-04-24 14:35
Modified
2026-04-24 14:35
Severity ?
Summary
In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix deadlock during netdev reset with active connections Resolve deadlock that occurs when user executes netdev reset while RDMA applications (e.g., rping) are active. The netdev reset causes ice driver to remove irdma auxiliary driver, triggering device_delete and subsequent client removal. During client removal, uverbs_client waits for QP reference count to reach zero while cma_client holds the final reference, creating circular dependency and indefinite wait in iWARP mode. Skip QP reference count wait during device reset to prevent deadlock.
Impacted products
Vendor Product Version
Linux Linux Version: 0b3c392b82cdf867808a8ea7c6760d3c7e6b6627
Version: 07322c8a12d6c796450faacb8be9e5e3c278ec84
Version: c8f304d75f6c6cc679a73f89591f9a915da38f09
Version: c8f304d75f6c6cc679a73f89591f9a915da38f09
Version: c8f304d75f6c6cc679a73f89591f9a915da38f09
Version: c8f304d75f6c6cc679a73f89591f9a915da38f09
Version: c8f304d75f6c6cc679a73f89591f9a915da38f09
Version: 6ee53f82540769a6d6e77e40b901f9b9edfa5ff2
Create a notification for this product.
Show details on NVD website


{
  "containers": {
    "cna": {
      "affected": [
        {
          "defaultStatus": "unaffected",
          "product": "Linux",
          "programFiles": [
            "drivers/infiniband/hw/irdma/verbs.c"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "lessThan": "009831768faeca3fb5950ce63f1b49594ec82389",
              "status": "affected",
              "version": "0b3c392b82cdf867808a8ea7c6760d3c7e6b6627",
              "versionType": "git"
            },
            {
              "lessThan": "adf0de36e52a48681eb58cbd7cbf6c8d200caa2b",
              "status": "affected",
              "version": "07322c8a12d6c796450faacb8be9e5e3c278ec84",
              "versionType": "git"
            },
            {
              "lessThan": "acb060bc2609c2eab49263968be59c7d59d497bc",
              "status": "affected",
              "version": "c8f304d75f6c6cc679a73f89591f9a915da38f09",
              "versionType": "git"
            },
            {
              "lessThan": "a8a1c7621127a15a02494b96ee376406c064237b",
              "status": "affected",
              "version": "c8f304d75f6c6cc679a73f89591f9a915da38f09",
              "versionType": "git"
            },
            {
              "lessThan": "cd8bcec2de5e24e05c34c9391940fda6f50e79b4",
              "status": "affected",
              "version": "c8f304d75f6c6cc679a73f89591f9a915da38f09",
              "versionType": "git"
            },
            {
              "lessThan": "464bbb844ba5b68e038220c34019069a0a9f1581",
              "status": "affected",
              "version": "c8f304d75f6c6cc679a73f89591f9a915da38f09",
              "versionType": "git"
            },
            {
              "lessThan": "6f52370970ac07d352a7af4089e55e0e6425f827",
              "status": "affected",
              "version": "c8f304d75f6c6cc679a73f89591f9a915da38f09",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "6ee53f82540769a6d6e77e40b901f9b9edfa5ff2",
              "versionType": "git"
            }
          ]
        },
        {
          "defaultStatus": "affected",
          "product": "Linux",
          "programFiles": [
            "drivers/infiniband/hw/irdma/verbs.c"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "6.4"
            },
            {
              "lessThan": "6.4",
              "status": "unaffected",
              "version": "0",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "5.15.*",
              "status": "unaffected",
              "version": "5.15.203",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.1.*",
              "status": "unaffected",
              "version": "6.1.168",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.6.*",
              "status": "unaffected",
              "version": "6.6.131",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.12.*",
              "status": "unaffected",
              "version": "6.12.80",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.18.*",
              "status": "unaffected",
              "version": "6.18.21",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.19.*",
              "status": "unaffected",
              "version": "6.19.11",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "*",
              "status": "unaffected",
              "version": "7.0",
              "versionType": "original_commit_for_fix"
            }
          ]
        }
      ],
      "cpeApplicability": [
        {
          "nodes": [
            {
              "cpeMatch": [
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "5.15.203",
                  "versionStartIncluding": "5.15.116",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.1.168",
                  "versionStartIncluding": "6.1.33",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.6.131",
                  "versionStartIncluding": "6.4",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.12.80",
                  "versionStartIncluding": "6.4",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.18.21",
                  "versionStartIncluding": "6.4",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.19.11",
                  "versionStartIncluding": "6.4",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "7.0",
                  "versionStartIncluding": "6.4",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "6.3.7",
                  "vulnerable": true
                }
              ],
              "negate": false,
              "operator": "OR"
            }
          ]
        }
      ],
      "descriptions": [
        {
          "lang": "en",
          "value": "In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/irdma: Fix deadlock during netdev reset with active connections\n\nResolve deadlock that occurs when user executes netdev reset while RDMA\napplications (e.g., rping) are active. The netdev reset causes ice\ndriver to remove irdma auxiliary driver, triggering device_delete and\nsubsequent client removal. During client removal, uverbs_client waits\nfor QP reference count to reach zero while cma_client holds the final\nreference, creating circular dependency and indefinite wait in iWARP\nmode. Skip QP reference count wait during device reset to prevent\ndeadlock."
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2026-04-24T14:35:46.006Z",
        "orgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
        "shortName": "Linux"
      },
      "references": [
        {
          "url": "https://git.kernel.org/stable/c/009831768faeca3fb5950ce63f1b49594ec82389"
        },
        {
          "url": "https://git.kernel.org/stable/c/adf0de36e52a48681eb58cbd7cbf6c8d200caa2b"
        },
        {
          "url": "https://git.kernel.org/stable/c/acb060bc2609c2eab49263968be59c7d59d497bc"
        },
        {
          "url": "https://git.kernel.org/stable/c/a8a1c7621127a15a02494b96ee376406c064237b"
        },
        {
          "url": "https://git.kernel.org/stable/c/cd8bcec2de5e24e05c34c9391940fda6f50e79b4"
        },
        {
          "url": "https://git.kernel.org/stable/c/464bbb844ba5b68e038220c34019069a0a9f1581"
        },
        {
          "url": "https://git.kernel.org/stable/c/6f52370970ac07d352a7af4089e55e0e6425f827"
        }
      ],
      "title": "RDMA/irdma: Fix deadlock during netdev reset with active connections",
      "x_generator": {
        "engine": "bippy-1.2.0"
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
    "assignerShortName": "Linux",
    "cveId": "CVE-2026-31565",
    "datePublished": "2026-04-24T14:35:46.006Z",
    "dateReserved": "2026-03-09T15:48:24.117Z",
    "dateUpdated": "2026-04-24T14:35:46.006Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2"
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Published Proof of Concept: A public proof of concept is available for this vulnerability.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…