{"id":"CVE-2026-81004","title":"kernel: ipmi:msghandler: Cancel work cleanly on an error (CVE-2026-81004)","summary":"A flaw was found in the Linux kernel's Intelligent Platform Management Interface (IPMI) message handler. When an error occurs during the startup of an IPMI interface, scheduled work may not be properly canceled. This can prevent the interf…","severity":"medium","cvss":5.5,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","cvssSource":"vendor","cwe":"CWE-772","vendor":"Red Hat","product":"Linux","affected":["Linux >= edb6c2118293c1fba9cd11ca80ed043d2411a7e5 < 99692252b348c11377fd0cdd66b6b18f3b22758e","Linux >= 62cd145453d577113f993efd025f258dd86aa183 < a496c51dd3257ed7e00873af2ad9bb22c3ddc4cf","Linux >= 62cd145453d577113f993efd025f258dd86aa183 < ae84a2536577057e97f23f75a202e26d0e86cf01","Linux 5199fc5dc9c519115457406009fcefd50721c995","Linux >= 6.18.20 < 6.18.50","Linux >= 6.19.10 < 6.20","Linux 7.0"],"published":"2026-09-11","updated":"2026-09-14","sourceUpdated":"2026-09-14T10:30:04+00:00","source":"CSAF","sourceUrl":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-81004.json","references":[{"url":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-81004.json"},{"url":"https://access.redhat.com/security/cve/CVE-2026-81004"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2532030"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-81004"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-81004"},{"url":"https://git.kernel.org/pub/scm/linux/security/vulns.git/plain/cve/published/2026/CVE-2026-81004.mbox"},{"url":"https://git.kernel.org/stable/c/99692252b348c11377fd0cdd66b6b18f3b22758e"},{"url":"https://git.kernel.org/stable/c/a496c51dd3257ed7e00873af2ad9bb22c3ddc4cf"},{"url":"https://git.kernel.org/stable/c/ae84a2536577057e97f23f75a202e26d0e86cf01"}],"tags":["csaf","vex","red-hat","cve.org","score-dispute"],"epss":0.0018,"epssPercentile":0.07884,"scores":{"vendor":5.5,"cna":8.4},"ingestedAt":"2026-09-14T15:23:07.476Z","slug":"CVE-2026-81004","body":"## Overview\n\nA flaw was found in the Linux kernel's Intelligent Platform Management Interface (IPMI) message handler. When an error occurs during the startup of an IPMI interface, scheduled work may not be properly canceled. This can prevent the interface from being freed cleanly, potentially leading to resource exhaustion or system instability.\n\n## Vendor advisories\n\n- **Red Hat VEX** · Moderate · updated 2026-09-14 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-81004.json)\n\n**kernel: ipmi:msghandler: Cancel work cleanly on an error** — rated Moderate by Red Hat. Released 2026-09-11, updated 2026-09-14.\n\nNot affected:\n\n- Red Hat Enterprise Linux 10\n- Red Hat Enterprise Linux 6\n- Red Hat Enterprise Linux 7\n- Red Hat Enterprise Linux 8\n- Red Hat Enterprise Linux 9\n- Red Hat OpenShift Container Platform 4\n\n## Remediation\n\nRefer to the advisory for fix availability.","depth":"sunlit","depthScore":30,"depthScoreParts":{"impact":30.3,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[{"seq":202789,"id":"CVE-2026-81004","ts":1789403721525,"field":"cvss","old":"8.4","new":"5.5"},{"seq":202788,"id":"CVE-2026-81004","ts":1789403721525,"field":"severity","old":"high","new":"medium"},{"seq":183574,"id":"CVE-2026-81004","ts":1789356675944,"field":"cvss","old":"8.4","new":"4.4"},{"seq":183573,"id":"CVE-2026-81004","ts":1789356675944,"field":"severity","old":"high","new":"medium"},{"seq":153198,"id":"CVE-2026-81004","ts":1789285349512,"field":"cvss","old":null,"new":"8.4"},{"seq":153197,"id":"CVE-2026-81004","ts":1789285349512,"field":"severity","old":"none","new":"high"},{"seq":109628,"id":"CVE-2026-81004","ts":1789183732706,"field":"cvss","old":null,"new":"4.4"},{"seq":109627,"id":"CVE-2026-81004","ts":1789183732706,"field":"severity","old":"none","new":"medium"}]}