CVE-2026-93158

Unknown

Last modified

CVE-2026-93158 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: crypto: sa2ul - stop probe if context pool creation fails sa_ul_probe() calls sa_init_mem() to create the DMA pool used for security context buffers, but ignores its return value. If pool creation fails, probe still continues with DMA setup, algorithm registration and child population even though later request setup depends on that pool. Stop probing when sa_init_mem() fails, and route that failure to the PM cleanup path without attempting to destroy an uncreated DMA pool..

Description

In the Linux kernel, the following vulnerability has been resolved: crypto: sa2ul - stop probe if context pool creation fails sa_ul_probe() calls sa_init_mem() to create the DMA pool used for security context buffers, but ignores its return value. If pool creation fails, probe still continues with DMA setup, algorithm registration and child population even though later request setup depends on that pool. Stop probing when sa_init_mem() fails, and route that failure to the PM cleanup path without attempting to destroy an uncreated DMA pool.

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 7694b6ca649fead1a57046935711bc82dfc78cfb, < 304dcd26bfc3ce6771c2bd3b7c0299dcfd5f4e06; >= 7694b6ca649fead1a57046935711bc82dfc78cfb, < 9907426b438e4dbc8c45138bd440ad6d732d80b7; >= 7694b6ca649fead1a57046935711bc82dfc78cfb, < 9a692a6a2b47328a36c8d80c7fbf81da16b6d6b1; >= 7694b6ca649fead1a57046935711bc82dfc78cfb, < 04c46784ec249cac995e31f0691397b82bdaa5fd; >= 7694b6ca649fead1a57046935711bc82dfc78cfb, < f72c7837614a9705f8b3021828d49c9f095803ba; >= 7694b6ca649fead1a57046935711bc82dfc78cfb, < 91ded4742fcde6ad415c4d8a20e5ea0dcdf4f73e; >= 7694b6ca649fead1a57046935711bc82dfc78cfb, < b68b35ed97d3e18edb9dea500d88420a95006742; >= 7694b6ca649fead1a57046935711bc82dfc78cfb, < d03f980a25853f6a380895119a572a3bb1194e8d
LinuxLinux5.9

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-93158?
In the Linux kernel, the following vulnerability has been resolved: crypto: sa2ul - stop probe if context pool creation fails sa_ul_probe() calls sa_init_mem() to create the DMA pool used for security context buffers, but ignores its return value. If pool creation fails, probe still continues with DMA setup, algorithm registration and child population even though later request setup depends on that pool. Stop probing when sa_init_mem() fails, and route that failure to the PM cleanup path without attempting to destroy an uncreated DMA pool.
How severe is CVE-2026-93158?
Severity scoring for CVE-2026-93158 is pending analysis.
How do I fix CVE-2026-93158?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-93158?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST