GPU VulnDB

Database/Kernel, userspace & hypervisor

Linux kernel SMC (early link-group access on CLC decline in smc_clc_wait_msg): A peer can send a CLC decline before the

CVE-2026-46027Kernel, userspace & hypervisorcurated

Impact

A peer can send a CLC decline before the connection has been attached to a link group, and the decline handler updates link-group-level state that does not exist yet. The remote side chooses the timing, so an unauthenticated peer declines early and dereferences the unset link group on the node it is talking to.

Who can reach it

Remote, unauthenticated, during SMC handshake - send a decline before link-group setup completes.

What to do

Kernel update guarding the link-group update on the link group existing. Keep SMC off tenant-reachable interfaces if it is not deliberately used.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.