VOOZH about

URL: https://nvd.nist.gov/vuln/detail/CVE-2026-46117

⇱ NVD - CVE-2026-46117


  1. Vulnerabilities

CVE-2026-46117 Detail

Undergoing Reanalysis

This CVE is currently being enriched by team members, this process results in the association of reference link tags, CVSS, CWE, and CPE applicability statement data.

Description

In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss() Sashiko points out that the user can specify WQs sharing the same CQ as a part of the uAPI and this will trigger the WARN_ON() then go on to corrupt the kernel. Just reject it outright and fail the QP creation.


Metrics

 
NVD enrichment efforts reference publicly available information to associate vector strings. CVSS information contributed by other sources is also displayed.
CVSS 4.0 Severity and Vector Strings:

NVD assessment not yet provided.

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to [email protected].

URL Source(s) Tag(s)
https://access.redhat.com/errata/RHSA-2026:27789 redhat-SADP
https://access.redhat.com/errata/RHSA-2026:30129 redhat-SADP
https://access.redhat.com/security/cve/CVE-2026-46117 redhat-SADP
https://bugzilla.redhat.com/show_bug.cgi?id=2482576 redhat-SADP
https://git.kernel.org/stable/c/159f2efabc89d3f931d38f2d35876535d4abf0a3 kernel.org Patch 
https://git.kernel.org/stable/c/9cc0c6b1ba8cd5c55aef043e1384de0a8b4efa71 kernel.org Patch 
https://git.kernel.org/stable/c/9ef65af26b2a6738bf15812042e84b3112402d3a kernel.org Patch 
https://git.kernel.org/stable/c/db991ba50087ad99fa12a2c483aa3be19671ea73 kernel.org Patch 
https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-46117.json redhat-SADP

Weakness Enumeration

CWE-ID CWE Name Source
CWE-617 Reachable Assertion πŸ‘ cwe source acceptance level
NIST  
CWE-1288 Improper Validation of Consistency within Input redhat-SADP  

Known Affected Software Configurations Switch to CPE 2.2

CPEs loading, please wait.

Denotes Vulnerable Software
Are we missing a CPE here? Please let us know.

Change History

5 change records found show changes

CVE Modified by redhat-SADP 6/29/2026 11:20:08 PM

Action Type Old Value New Value
Added CVSS V3.1
AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H


Added CWE
CWE-1288


Added Reference
https://access.redhat.com/errata/RHSA-2026:27789


Added Reference
https://access.redhat.com/errata/RHSA-2026:30129


Added Reference
https://access.redhat.com/security/cve/CVE-2026-46117


Added Reference
https://bugzilla.redhat.com/show_bug.cgi?id=2482576


Added Reference
https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-46117.json


Added Affected Record truncated, showing 2048 of 2086 characters.
View Entire Change Record
[{"vendor":"Red Hat","product":"Red Hat Enterprise Linux AppStream (v. 10)","defaultStatus":"affected","cpes":["cpe:/o:redhat:enterprise_linux:10.2"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux AppStream (v. 9)","defaultStatus":"affected","cpes":["cpe:/a:redhat:enterprise_linux:9::appstream"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux BaseOS (v. 10)","defaultStatus":"affected","cpes":["cpe:/o:redhat:enterprise_linux:10.2"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux BaseOS (v. 9)","defaultStatus":"affected","cpes":["cpe:/o:redhat:enterprise_linux:9::baseos"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)","defaultStatus":"affected","cpes":["cpe:/o:redhat:enterprise_linux:10.2"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux CodeReady Linux Builder (v. 9)","defaultStatus":"affected","cpes":["cpe:/a:redhat:enterprise_linux:9::crb"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux Real Time for NFV (v. 10)","defaultStatus":"affected","cpes":["cpe:/o:redhat:enterprise_linux:10.2"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux Real Time for NFV (v. 9)","defaultStatus":"affected","cpes":["cpe:/a:redhat:enterprise_linux:9::nfv"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux Real Time (v. 10)","defaultStatus":"affected","cpes":["cpe:/o:redhat:enterprise_linux:10.2"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux Real Time (v. 9)","defaultStatus":"affected","cpes":["cpe:/a:redhat:enterprise_linux:9::realtime"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux 8","defaultStatus":"affected","cpes":["cpe:/o:redhat:enterprise_linux:8"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux 9","defaultStatus":"affected","cpes":["cpe:/o:redhat:enterprise_linux:9"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux 6","defaultStatus":"unaffected","cpes":["cpe:/o:redhat:enterprise_linux:6"]},{"vendor":"Red Hat","product":"Red Hat Enterprise Linux 7","defaultStatus":"unaffected","cpes":

Initial Analysis by NIST 6/24/2026 12:59:55 PM

Action Type Old Value New Value
Added CWE
CWE-617


Added CPE Configuration
OR
 *cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:*
 *cpe:2.3:o:linux:linux_kernel:7.1:rc2:*:*:*:*:*:*
 *cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions from (including) 6.13 up to (excluding) 6.18.30
 *cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions from (including) 6.19 up to (excluding) 7.0.7
 *cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* versions from (including) 6.8 up to (excluding) 6.12.91


Added Reference Type
kernel.org: https://git.kernel.org/stable/c/159f2efabc89d3f931d38f2d35876535d4abf0a3 Types: Patch


Added Reference Type
kernel.org: https://git.kernel.org/stable/c/9cc0c6b1ba8cd5c55aef043e1384de0a8b4efa71 Types: Patch


Added Reference Type
kernel.org: https://git.kernel.org/stable/c/9ef65af26b2a6738bf15812042e84b3112402d3a Types: Patch


Added Reference Type
kernel.org: https://git.kernel.org/stable/c/db991ba50087ad99fa12a2c483aa3be19671ea73 Types: Patch


CVE Modified by kernel.org 6/17/2026 6:53:05 AM

Action Type Old Value New Value
Added Affected
[{"vendor":"Linux","product":"Linux","defaultStatus":"unaffected","programFiles":["drivers/infiniband/hw/mana/cq.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","versions":[{"version":"c15d7802a42402a87880a17eee89ff023e49ecc0","lessThan":"9cc0c6b1ba8cd5c55aef043e1384de0a8b4efa71","versionType":"git","status":"affected"},{"version":"c15d7802a42402a87880a17eee89ff023e49ecc0","lessThan":"9ef65af26b2a6738bf15812042e84b3112402d3a","versionType":"git","status":"affected"},{"version":"c15d7802a42402a87880a17eee89ff023e49ecc0","lessThan":"db991ba50087ad99fa12a2c483aa3be19671ea73","versionType":"git","status":"affected"},{"version":"c15d7802a42402a87880a17eee89ff023e49ecc0","lessThan":"159f2efabc89d3f931d38f2d35876535d4abf0a3","versionType":"git","status":"affected"}]},{"vendor":"Linux","product":"Linux","defaultStatus":"affected","programFiles":["drivers/infiniband/hw/mana/cq.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","versions":[{"version":"6.8","status":"affected"},{"version":"0","lessThan":"6.8","versionType":"semver","status":"unaffected"},{"version":"6.12.91","lessThanOrEqual":"6.12.*","versionType":"semver","status":"unaffected"},{"version":"6.18.30","lessThanOrEqual":"6.18.*","versionType":"semver","status":"unaffected"},{"version":"7.0.7","lessThanOrEqual":"7.0.*","versionType":"semver","status":"unaffected"},{"version":"7.1","lessThanOrEqual":"*","versionType":"original_commit_for_fix","status":"unaffected"}]}]


CVE Modified by kernel.org 5/30/2026 7:17:22 AM

Action Type Old Value New Value
Added CVSS V3.1
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H


New CVE Received from kernel.org 5/28/2026 6:16:27 AM

Action Type Old Value New Value
Added Description
In the Linux kernel, the following vulnerability has been resolved:

RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss()

Sashiko points out that the user can specify WQs sharing the same CQ as a
part of the uAPI and this will trigger the WARN_ON() then go on to corrupt
the kernel.

Just reject it outright and fail the QP creation.


Added Reference
https://git.kernel.org/stable/c/159f2efabc89d3f931d38f2d35876535d4abf0a3


Added Reference
https://git.kernel.org/stable/c/9cc0c6b1ba8cd5c55aef043e1384de0a8b4efa71


Added Reference
https://git.kernel.org/stable/c/9ef65af26b2a6738bf15812042e84b3112402d3a


Added Reference
https://git.kernel.org/stable/c/db991ba50087ad99fa12a2c483aa3be19671ea73


Quick Info

CVE Dictionary Entry:
CVE-2026-46117
NVD Published Date:
05/28/2026
NVD Last Modified:
06/29/2026
Source:
kernel.org