Description
In the Linux kernel, the following vulnerability has been resolved: nvme-pci: ensure we're polling a polled queue A user can change the polled queue count at run time. There's a brief window during a reset where a hipri task may try to poll that queue before the block layer has updated the queue maps, which would race with the now interrupt driven queue and may cause double completions.
References (8)
Core 8
Core References
Scores
CVSS v3
4.7
EPSS
0.0009
EPSS Percentile
0.5%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-367
Status
published
Products (35)
linux/Kernel
5.0.0 - 5.10.253linux
linux/Kernel
5.11.0 - 5.15.203linux
linux/Kernel
5.16.0 - 6.1.168linux
linux/Kernel
6.13.0 - 6.18.21linux
linux/Kernel
6.19.0 - 6.19.11linux
linux/Kernel
6.2.0 - 6.6.131linux
linux/Kernel
6.7.0 - 6.12.80linux
Linux/Linux
< 5.0
Linux/Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 0685dd9cb855ab77fcf3577b4702ba1d6df1c98d
Linux/Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 166e31d7dbf6aa44829b98aa446bda5c9580f12a
... and 25 more
Published
Apr 22, 2026
Tracked Since
Apr 22, 2026