CVE-2026-43064
MEDIUM severity · CVSS 5.5
5.5CVSS MEDIUM
Summary
In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix not releasing workqueue on .release() The workqueue associated with an DSA/IAA device is not released when the object is freed.
Impact & exploitability
Attack vectorLocal
Attack complexityLow
Privileges requiredLow
User interactionNone
Confidentiality impactNone
Integrity impactNone
Availability impactHigh
Exploit probability (EPSS)0%
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected products we track (1)
Recommendation
Apply the vendor fix in your normal patch cycle. Open any affected product above for its exact safe version.
Official patch: https://git.kernel.org/stable/c/2bb9e9e93adff9cc8a138ae9a3a8d59b3452272e ↗
Additional information
- NVD record
- https://git.kernel.org/stable/c/2bb9e9e93adff9cc8a138ae9a3a8d59b3452272ePatch
- https://git.kernel.org/stable/c/3d33de353b1ff9023d5ec73b9becf80ea87af695Patch
- https://git.kernel.org/stable/c/958e96533ddbd1edd127feb7624a7eed0cc379dcPatch
- https://git.kernel.org/stable/c/d02c24af126dee45247dc7890409c86d1831859dPatch
- https://git.kernel.org/stable/c/fc34f199eb576b3a73089452fdf0056cc9a9301dPatch
- https://git.kernel.org/stable/c/70ae35be58d476e2fd9f7a941a5e03b2f5fadb8d
- https://git.kernel.org/stable/c/b22fd53b2ceb35445475f0edab13a908c5fb8433