news.mlab.sh
Vulnerabilities
Vulnerability

CVE-2026-31523

Reference data from vuln.mlab.sh, coverage from our own index.

CVSS
4.7 Medium
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Risk score
37.6
Published
2026-04-22
Status
Analyzed

In the Linux kernel, the following vulnerability has been resolved: nvme-pci: ensure we're polling a polled queue A user can change the polled queue count at run time. There's a brief window during a reset where a hipri task may try to poll that queue before the block layer has updated the queue maps, which would race with the now interrupt driven queue and may cause double completions.

Weaknesses

CWE-367

Coverage 6

Advisories and references