PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-93107 Linux CVE debrief

A vulnerability in the Linux kernel's RDMA/rxe component can cause duplicate completions, leading to data corruption and potential security issues. Defenders should assess exposure, prioritize remediation, and verify affected systems. The vulnerability occurs when a QP moves to the error state while a packet is being completed, causing the responder state machine to loop back into the request processing chain with the already-completed packet still in hand. This can lead to duplicate completions, data corruption, and potential security issues. Defenders should review the supplied official advisory or CVE record to validate affected scope, severity, and vendor guidance.

Vendor
Linux
Product
Unknown
CVSS
HIGH 8.2
CISA KEV
Not listed in stored evidence
Original CVE published
2026-09-17
Original CVE updated
2026-09-18
Advisory published
2026-09-17
Advisory updated
2026-09-18

Who should care

Defenders responsible for Linux kernel systems using RDMA/rxe should assess exposure and prioritize remediation. This includes system administrators, security teams, and developers working with Linux kernel-based systems.

Why it matters

A vulnerability in the Linux kernel's RDMA/rxe component can cause duplicate completions, leading to data corruption and potential security issues. Defenders should assess exposure, prioritize remediation, and verify affected systems.

  • Data corruption due to duplicate completions
  • Potential security issues due to re-processing of completed packets
  • Verification of affected systems and versions is required
  • Remediation priority is high due to potential for data corruption and security issues

Technical summary

The Linux kernel's RDMA/rxe component has a vulnerability that can cause duplicate completions, leading to data corruption and potential security issues. This occurs when a QP moves to the error state while a packet is being completed, causing the responder state machine to loop back into the request processing chain with the already-completed packet still in hand. The vulnerability has been resolved in the Linux kernel, and defenders should review the supplied official advisory or CVE record to validate affected scope, severity, and vendor guidance. Defenders should also verify affected systems and versions, and plan vendor-supported updates or mitigations through normal change control where exposure is确认.

Defensive priority

High

Recommended defensive actions

  • Assess exposure and prioritize remediation for Linux kernel systems using RDMA/rxe
  • Verify affected systems and versions
  • Apply patches or updates provided by the Linux kernel maintainers
  • Review compensating controls for exposed systems while remediation is scheduled and verified
  • Check relevant monitoring, detection, and logs for exposed assets that need extra review
  • Track exceptions, retest remediated assets, and close the item only after evidence is documented
  • Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up

Evidence notes

The CVE record and NVD entry provide details on the vulnerability, but the scope of affected systems and versions is not explicitly stated. Defenders should verify affected systems and versions, and review compensating controls for exposed systems while remediation is scheduled and verified. The vulnerability has been resolved in the Linux kernel, and defenders should plan vendor-supported updates or mitigations through normal change control where exposure is confirmed.

Sources and references

Verified primary and authoritative sources

  • CVE-2026-93107 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2026-93107

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2026-93107 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2026-93107

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/0d37e2503efd1069a74be740eadf63ea17c96810

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/15ae32c4a3551c4c9da457370bdfdd65d171e512

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/399713f1f0eac641351c8ceaec0ab8244ddcf78c

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/62a4b48767e06fdd64548450fae2b1ffc6ff5d69

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

  • Source reference

    Unverified legacy reference

    URL: https://git.kernel.org/stable/c/c319b986a88cedf600c4497cd7814a891b2f9e7c

    416baaa9-dc9f-4396-8d5f-8c081fb06d67

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.