CVE-2026-97421: Linux
High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: RDMA/umem: Be careful about boundary conditions in ib_umem_find_best_pgsz() Several corner cases, especially important on 32 bits: - umem->iova is u64, the function argument should pass in u64 or iova will be truncated - Check that the length is not too large for the iova - Check that lengths > 4G don't overflow the GENMASK
Affected products
- Linux Linux: from 5.4.73, before 5.5 (fixed in 5.5); from 5.8.17, before 5.9 (fixed in 5.9); from 5.9.2, before 5.10 (fixed in 5.10); from 5.10, before 5.15.222 (fixed in 5.15.222); from 5.16, before 6.1.189 (fixed in 6.1.189); from 6.2, before 6.6.158 (fixed in 6.6.158); …
Published 2026-09-24. Last modified 2026-10-03.