{"id":"CVE-2026-72495","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-72495","summary":"RDMA/bnxt_re: Avoid repeated requests to allocate WC pages","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nRDMA/bnxt_re: Avoid repeated requests to allocate WC pages\n\nApplications can request multiple WC pages for the same ucontext.\nAs of now, only 1 WC page per ucontext is supported. Add a lock to\navoid concurrent access and a check to fail repeated requests.\nAlso, if the mmap entry insert fails for the WC, free the Doorbell\npage index mapped for the WC page.","published":"2026-08-15T05:57:28.920Z","modified":"2026-08-18T03:56:27.267077370Z","cvss":{"score":9.3,"severity":"CRITICAL","vector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[{"ecosystem":"Linux","name":"Kernel","fixedVersion":"6.18.40"}],"fix":null,"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/441baa79043431807115fd030d7d0bb14ed441a0"},{"type":"WEB","url":"https://git.kernel.org/stable/c/478c4d24193fe3e6aa2accd4874ae43000e4a217"},{"type":"WEB","url":"https://git.kernel.org/stable/c/da406b8b49c1dfe661a497483940d7ee781430db"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72495.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-72495"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-18T03:56:27.267077370Z"}}