Junglewise Threat Intelligence

CVE-2026-46265: Linux Kernel RDMA/hns deadlock risk in hns_roce_hw_v2 workqueue

CVE-2026-46265 · Severity: info · CVSS 4.4 · Published 2026-06-03

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability was identified in the Linux kernel's RDMA driver for HiSilicon hardware. Under specific conditions involving network file system (SUNRPC) resets, the system may encounter a kernel warning or potential deadlock during memory reclamation. This could lead to system instability or a denial of service for applications relying on high-performance RDMA networking.

Technical details

A dependency violation was discovered in the hns_roce_hw_v2 driver where a workqueue (hns_roce_irq_workq) lacked the WQ_MEM_RECLAIM flag. When SUNRPC triggers a reset, the xprtiod workqueue (which has WQ_MEM_RECLAIM) attempts to flush hns_roce_irq_workq. Because the latter is not marked for memory reclamation, this creates a 'check_flush_dependency' warning and a risk of deadlock under memory pressure during Queue Pair (QP) destruction. The fix involves adding the WQ_MEM_RECLAIM flag to the workqueue allocation in the hns_roce_v2_init_eq_table function.

Affected products

  • Linux Linux Kernel hns_roce_hw_v2 driver

Timeline

  • 2026-01-04: patched: Initial patch authored by Chengchang Tang
  • 2026-06-03: disclosed: CVE published

References

Related threats