CVE Database
/

CVE-2026-46105

Back to search

CVE-2026-46105

Published: May 28, 2026

Modified: May 30, 2026

PUBLISHED

CVSS v3.1

7.8

HIGH

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Limit NVMe request size to 2 MiB The HBA firmware reports NVMe MDTS values based on the underlying drive capability. However, because the driver allocates a fixed 4K buffer for the PRP list, accommodating at most 512 entries, the driver supports a maximum I/O transfer size of 2 MiB. Limit max_hw_sectors to the smaller of the reported MDTS and the 2 MiB driver limit to prevent issuing oversized I/O that may lead to a kernel oops.

VendorProductVersions

Linux

Linux

affected
9b8b84879d4adc506b0d3944e20b28d9f3f6994b - < 45dcc815fc5539e88154315f36cbcb11d3a52fc2
affected
9b8b84879d4adc506b0d3944e20b28d9f3f6994b - < e5f9824817c6358b9f9738bdb92dec9e4e794d3c
affected
9b8b84879d4adc506b0d3944e20b28d9f3f6994b - < 04631f55afc543d5431a2bdee7f6cc0f2c0debe7

Linux

Linux

affected
6.17
unaffected
0 - < 6.17
unaffected
6.18.30 - <= 6.18.*
unaffected
7.0.7 - <= 7.0.*
unaffected
7.1-rc3 - <= *

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Local

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now