CVE-2026-31492

high

Description

In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Initialize free_qp completion before using it In irdma_create_qp, if ib_copy_to_udata fails, it will call irdma_destroy_qp to clean up which will attempt to wait on the free_qp completion, which is not initialized yet. Fix this by initializing the completion before the ib_copy_to_udata call.

References

https://git.kernel.org/stable/c/f72996834f7bdefc2b95e3eec30447ee195df44e

https://git.kernel.org/stable/c/cd1534c8f4984432382c240f6784408497f5bb0a

https://git.kernel.org/stable/c/af310407f79d5816fc0ab3638e1588b6193316dd

https://git.kernel.org/stable/c/ac1da7bd224d406b6f1b84414f0f652ab43b6bd8

https://git.kernel.org/stable/c/3cb88c12461b71c7d9c604aa2e6a9a477ecfa147

https://git.kernel.org/stable/c/11a95521fb93c91e2d4ef9d53dc80ef0a755549b

Details

Source: Mitre, NVD

Published: 2026-04-22

Updated: 2026-04-23

Risk Information

CVSS v2

Base Score: 4.9

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 7.1

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Severity: High

EPSS

EPSS: 0.00024