Junglewise Threat Intelligence

CVE-2026-63860: Linux Kernel RDMA core missing null terminator validation in iWARP Port Mapper

CVE-2026-63860 · Severity: info · Published 2026-07-19

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability was identified in the Linux kernel's RDMA (Remote Direct Memory Access) component. The system failed to properly validate that certain data strings sent from user applications were correctly terminated. This could potentially lead to system instability or memory-related issues when the kernel processes malformed network management messages.

Technical details

A vulnerability exists in the RDMA/core component of the Linux kernel, specifically within the iWARP Port Mapper (iwpm_msg.c). The netlink attribute policy used NLA_STRING for attributes like IWPM_NLA_RREG_IBDEV_NAME and IWPM_NLA_RREG_ULIB_NAME, which does not guarantee a null terminator. When these attributes are subsequently processed by functions like strcmp() or printf with %s, an attacker providing a non-terminated string could trigger an out-of-bounds read. The fix involves migrating these attributes to NLA_NUL_STRING to ensure the kernel enforces the presence of a null terminator. This issue primarily affects local users or applications interacting with the RDMA subsystem via netlink.

Affected products

  • Linux Linux Kernel 3.16 to 6.13.y

Timeline

  • 2026-07-19: advisory: NVD publication date
  • 2026-04-09: patched: Initial patch commit in Linux kernel master branch

References

Related threats