---
id: CVE-2026-93102
title: |-
  In the Linux kernel, the following vulnerability has been resolved:

  RDMA/hfi1: Free RX data on late probe failure

  hfi1_init_dd() allocates the shared AIP/VNIC RX support before returning.
  If hfi1_init() or hfi1_register_ib_device() lat…
summary: |-
  In the Linux kernel, the following vulnerability has been resolved:

  RDMA/hfi1: Free RX data on late probe failure

  hfi1_init_dd() allocates the shared AIP/VNIC RX support before returning.
  If hfi1_init() or hfi1_register_ib_device() lat…
severity: none
vendor: Linux
product: Linux
affected:
  - >-
    Linux >= 4730f4a6c6b2065589c0822af00aa45e639bbc36 <
    cfad037c6d305876b877abc39fd4d7e2185e44f3
  - >-
    Linux >= 4730f4a6c6b2065589c0822af00aa45e639bbc36 <
    d1c91cb02e05fdd93411de707cc5c3c08375df9e
  - >-
    Linux >= 4730f4a6c6b2065589c0822af00aa45e639bbc36 <
    10e5e37495096b58f07adc4020de2701efc3a9e0
  - >-
    Linux >= 4730f4a6c6b2065589c0822af00aa45e639bbc36 <
    cd06c17afb08b37995f66cf560c2332a769b8f80
  - >-
    Linux >= 4730f4a6c6b2065589c0822af00aa45e639bbc36 <
    149a14ec70887ad14e820a7ca15738ded3d2d493
  - >-
    Linux >= 4730f4a6c6b2065589c0822af00aa45e639bbc36 <
    83fe4e4f4fbf01d3832a24511c0ddfaccf5df9d8
  - >-
    Linux >= 4730f4a6c6b2065589c0822af00aa45e639bbc36 <
    8e17e101e04a3dc062e2719da57ff78c1c060632
  - Linux 5.8
published: '2026-09-17'
updated: '2026-09-17'
sourceUpdated: '2026-09-17T17:18:04.480'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-93102'
references:
  - url: 'https://git.kernel.org/stable/c/10e5e37495096b58f07adc4020de2701efc3a9e0'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/149a14ec70887ad14e820a7ca15738ded3d2d493'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/83fe4e4f4fbf01d3832a24511c0ddfaccf5df9d8'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/8e17e101e04a3dc062e2719da57ff78c1c060632'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/cd06c17afb08b37995f66cf560c2332a769b8f80'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/cfad037c6d305876b877abc39fd4d7e2185e44f3'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/d1c91cb02e05fdd93411de707cc5c3c08375df9e'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
tags:
  - nvd
  - cve.org
ingestedAt: '2026-09-17T16:21:47.756Z'
epss: 0.00215
epssPercentile: 0.10564
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

RDMA/hfi1: Free RX data on late probe failure

hfi1_init_dd() allocates the shared AIP/VNIC RX support before returning.
If hfi1_init() or hfi1_register_ib_device() later fails, init_one() tears
down the device data without calling hfi1_free_rx(). This leaks netdev_rx
and its dummy netdev.

Free the RX support after IB unregistration and before postinit_cleanup(),
as done on normal device removal.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
