Back to overview

CVE-2026-64003

HIGH
7.5
CVSS 3.1
Description
In the Linux kernel, the following vulnerability has been resolved: scsi: core: Run queues for all non-SDEV_DEL devices from scsi_run_host_queues While a SCSI host is in a recovery state, scsi_mq_requeue_cmd() will not set the requeue list for a requeued command to be kicked in the future. The expectation is a call to scsi_run_host_queues() will kick all SCSI devices once the recovery state is cleared. However, scsi_run_host_queues() uses shost_for_each_device() which uses scsi_device_get() and so will ignore devices in a partially removed state like SDEV_CANCEL. But these devices may also have requeued requests, leaving their requests stuck from not being kicked and causing the removal process of the device to hang. scsi_run_host_queues() needs to run against more devices than the macro shost_for_each_device() allows. Instead of using the too limiting scsi_device_get() state checks, only ignore devices in SDEV_DEL state or when unable to acquire a reference. Attempt to run the queues for all other devices when scsi_run_host_queues() is called.

Metadata

CVE ID
CVE-2026-64003
State
PUBLISHED
Assigner
Linux
Reserved
2026-07-19 07:54 UTC
Published
2026-07-19 14:56 UTC
Last updated
2026-07-20 13:42 UTC
Vendor / Product
Linux / Linux
Sources
cve.org  ·  NVD

Severity & Metrics

7.5 HIGH CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected products (2)
VendorProductPlatformVersions
Linux Linux 8b566edbdbfb5cde31a322c57932694ff48125ed < 15fb19af49f2073ed77fad16aaabc648b0ca6800, 8b566edbdbfb5cde31a322c57932694ff48125ed < d4dddfecdbb5467bef158d4e1486459808357fef, 8b566edbdbfb5cde31a322c57932694ff48125ed < 475f2b37a78f4c698967a7f14f325f04e24c9175, 8b566edbdbfb5cde31a322c57932694ff48125ed < c740e13e7fe32d8e4d9a1699f65b8daf6709895a …
Linux Linux 6.5, 0 < 6.5, 6.6.143 ≤ 6.6.*, 6.12.93 ≤ 6.12.* …
CVSS scores (1)
ScoreSeverityVersionSourceVector
7.5 HIGH 3.1 cna CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Back to overview