Get a Demo

Let's Patch It!

Book a short call with one our specialists, we'll walk you through how Endor Patches work, and ask you a few questions about your environment (like your primary programming languages and repository management). We'll also send you an email right after you fill out the form, feel free to reply with any questions you have in advance!

CVE

CVE-2026-53355

net: rds: clear i_sends on setup unwind
Back to all
CVE

CVE-2026-53355

net: rds: clear i_sends on setup unwind

In the Linux kernel, the following vulnerability has been resolved:

net: rds: clear i_sends on setup unwind

The RDS IB connection teardown path is written so it can run during

partial startup and on repeated shutdown attempts. It uses NULL

pointers to distinguish resources that are still owned from resources

that have already been released.

When rdsibsetupqp() fails after allocating isends but before

allocating irecvs, the sendsout path frees i_sends without clearing

the pointer. A later shutdown pass can still treat that stale pointer

as a live send ring allocation.

Clear i_sends after vfree() in the error unwind path so the existing

shutdown logic continues to use the correct ownership state.

Package Versions Affected

Package Version
patch Availability
No items found.

Automatically patch vulnerabilities without upgrading

Fix Without Upgrading
Detect compatible fix
Apply safe remediation
Fix with a single pull request

CVSS Version

Severity
Base Score
CVSS Version
Score Vector
C
H
U
9.8
-
3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
C
H
U
0
-
3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
C
H
U
-

Related Resources

No items found.

References

https://git.kernel.org/stable/c/1d4ec754ee3871f7e3670c67bb0298c9c5760926, https://git.kernel.org/stable/c/20cf0fb715c41111469577e85e35d15f099473e0, https://git.kernel.org/stable/c/27040bbca289a704eafcacca167d310c6ce2b1bc, https://git.kernel.org/stable/c/29d940026dce39e3018dab6f67c9427249321270, https://git.kernel.org/stable/c/2c5e5e4a5970c41f16e3ad801a78719ed5d5c71b, https://git.kernel.org/stable/c/66cccec111421a10efdc2c74499d15b93e7acae5, https://git.kernel.org/stable/c/e7cf30aa5f1fc6c2a86df65df8b731df20e44d79, https://git.kernel.org/stable/c/f16ad421a4e3e7db2d14bdf3b16f583bc4f3b30a, https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/53xxx/CVE-2026-53355.json, https://nvd.nist.gov/vuln/detail/CVE-2026-53355, https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Severity

9.8

CVSS Score
0
10

Basic Information

Base CVSS
9.8
EPSS Probability
0.00421%
EPSS Percentile
0.35319%
Introduced Version
3b12f73a5c2977153f28a224392fd4729b50d1dc,0,3.18.74,4.1.46,4.4.91,4.9.54,4.11.0,5.11.0,5.16.0,6.2.0,6.7.0,6.13.0,6.19.0
Fix Available
20cf0fb715c41111469577e85e35d15f099473e0,3.19,4.2,4.5,4.10,5.10.259,5.15.210,6.1.176,6.6.143,6.12.94,6.18.36,7.0.13,6.1.176-1,6.12.94-1

Fix Critical Vulnerabilities Instantly

Secure your app without upgrading.
Fix Without Upgrading