{"id":"CVE-2026-31441","title":"dmaengine: idxd: Fix memory leak when a wq is reset","summary":"In the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: idxd: Fix memory leak when a wq is reset\n\nidxd_wq_disable_cleanup() which is called from the reset path for a\nworkqueue, sets the wq type to NONE, which for …","severity":"none","vendor":"Linux","product":"Linux","affected":["Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < a16098a2f0c11ee5e04e23aa7478ca1fcfb0f658","Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < 54d77cc0c40ca2f894859dc7b3c52997574f1a2a","Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < 39c1504e0e76bcfb93991fd94288a83e05d13b51","Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < a9e7815d38629bcf59d3005001f1f315424a58de","Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < 0c3d3ac57e3c52b570b8c695903306bff07e04c8","Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < d9cfb5193a047a92a4d3c0e91ea4cc87c8f7c478","Linux 2a2df2bd10de44c3804661ed15157817c12d6291","Linux >= 5.7.10 < 5.8","Linux 5.8"],"published":"2026-04-22","updated":"2026-09-08","sourceUpdated":"2026-09-08T08:47:08.396Z","source":"CVEORG","sourceUrl":"https://www.cve.org/CVERecord?id=CVE-2026-31441","references":[{"url":"https://git.kernel.org/stable/c/a16098a2f0c11ee5e04e23aa7478ca1fcfb0f658"},{"url":"https://git.kernel.org/stable/c/54d77cc0c40ca2f894859dc7b3c52997574f1a2a"},{"url":"https://git.kernel.org/stable/c/39c1504e0e76bcfb93991fd94288a83e05d13b51"},{"url":"https://git.kernel.org/stable/c/a9e7815d38629bcf59d3005001f1f315424a58de"},{"url":"https://git.kernel.org/stable/c/0c3d3ac57e3c52b570b8c695903306bff07e04c8"},{"url":"https://git.kernel.org/stable/c/d9cfb5193a047a92a4d3c0e91ea4cc87c8f7c478"}],"tags":["cve.org"],"epss":0.00123,"epssPercentile":0.02362,"ingestedAt":"2026-09-08T15:33:26.990Z","slug":"CVE-2026-31441","body":"## Overview\n\nIn the Linux kernel, the following vulnerability has been resolved:\n\ndmaengine: idxd: Fix memory leak when a wq is reset\n\nidxd_wq_disable_cleanup() which is called from the reset path for a\nworkqueue, sets the wq type to NONE, which for other parts of the\ndriver mean that the wq is empty (all its resources were released).\n\nOnly set the wq type to NONE after its resources are released.\n\n## Affected\n\n- `Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < a16098a2f0c11ee5e04e23aa7478ca1fcfb0f658`\n- `Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < 54d77cc0c40ca2f894859dc7b3c52997574f1a2a`\n- `Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < 39c1504e0e76bcfb93991fd94288a83e05d13b51`\n- `Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < a9e7815d38629bcf59d3005001f1f315424a58de`\n- `Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < 0c3d3ac57e3c52b570b8c695903306bff07e04c8`\n- `Linux >= da32b28c95a79e399e18c03f8178f41aec9c66e4 < d9cfb5193a047a92a4d3c0e91ea4cc87c8f7c478`\n- `Linux 2a2df2bd10de44c3804661ed15157817c12d6291`\n- `Linux >= 5.7.10 < 5.8`\n- `Linux 5.8`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}