CVE-2026-98152: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: nvmet-rdma: fix queue leak when connect backlog is exceeded When pending disconnecting queues exceed the backlog limit, the connect path only drops the device reference and leaks the newly allocated queue and its IB resources.
Affected products
- Linux Linux Kernel: from 6.12.96, before 6.12.111 (fixed in 6.12.111); from 6.18.39, before 6.18.53 (fixed in 6.18.53); from 7.1.4, before 7.2.7 (fixed in 7.2.7); version 7.3 only
Published 2026-09-25. Last modified 2026-10-02.