CVE-2026-46189
HIGHRDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path
Title source: cnaDescription
In the Linux kernel, the following vulnerability has been resolved: RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path Sashiko points out that pvrdma_uar_free() is already called within pvrdma_dealloc_ucontext(), so calling it before triggers a double free.
References (22)
Core 22
Core References
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:38902
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:30848
Vendor Advisory
https://access.redhat.com/security/cve/CVE-2026-46189
Vendor Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=2482588
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:40068
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:40760
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:35904
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:36049
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:36073
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:33685
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:33743
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:36767
Vendor Advisory
https://access.redhat.com/errata/RHSA-2026:47633
Scores
CVSS v3
7.8
EPSS
0.0014
EPSS Percentile
4.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-1341
CWE-415
Status
published
Products (28)
linux/Kernel
4.10.0 - 5.10.258linux
linux/Kernel
5.11.0 - 5.15.209linux
linux/Kernel
5.16.0 - 6.1.175linux
linux/Kernel
6.13.0 - 6.18.30linux
linux/Kernel
6.19.0 - 7.0.7linux
linux/Kernel
6.2.0 - 6.6.140linux
linux/Kernel
6.7.0 - 6.12.88linux
Linux/Linux
< 4.10
Linux/Linux
29c8d9eba550c6d73d17cc1618a9f5f2a7345aa1 - 0c63333ff97bd1275294fd12840a0efe9d7a4c59
Linux/Linux
29c8d9eba550c6d73d17cc1618a9f5f2a7345aa1 - 1df5711121cdc11e76b889408fdbe459feba1d39
... and 18 more
Published
May 28, 2026
Tracked Since
May 28, 2026