CVE-2026-43174

MEDIUM

io_uring/zcrx: fix post open error handling

Title source: cna
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: io_uring/zcrx: fix post open error handling Closing a queue doesn't guarantee that all associated page pools are terminated right away, let the refcounting do the work instead of releasing the zcrx ctx directly.

Scores

CVSS v3 5.5
EPSS 0.0001
EPSS Percentile 3.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (7)
Linux/Linux < 6.15
Linux/Linux 6.15
Linux/Linux 6.19.6 - 6.19.*
Linux/Linux 7.0
Linux/Linux e0793de24a9f610bd8ce106f7033b3966e7fca0e - 18afaff077b46655a8eb6fd7f6de1b81327be577
Linux/Linux e0793de24a9f610bd8ce106f7033b3966e7fca0e - 5d540e4508950c674d6feef1d95463d039bbf4f5
linux/linux_kernel 6.15 - 6.19.6
Published May 06, 2026
Tracked Since May 06, 2026