{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-43184","assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","state":"PUBLISHED","assignerShortName":"Linux","dateReserved":"2026-05-01T14:12:55.991Z","datePublished":"2026-05-06T11:27:55.672Z","dateUpdated":"2026-05-11T22:19:28.375Z"},"containers":{"cna":{"providerMetadata":{"orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux","dateUpdated":"2026-05-11T22:19:28.375Z"},"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\nrnbd-srv: Zero the rsp buffer before using it\n\nBefore using the data buffer to send back the response message, zero it\ncompletely. This prevents any stray bytes to be picked up by the client\nside when there the message is exchanged between different protocol\nversions."}],"metrics":[{"cvssV3_1":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","baseScore":7.5,"baseSeverity":"HIGH"}}],"affected":[{"product":"Linux","vendor":"Linux","defaultStatus":"unaffected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/block/rnbd/rnbd-srv.c"],"versions":[{"version":"2de6c8de192b9341ffa5e84afe1ce6196d4eef41","lessThan":"e4272754063d52c9ad0169865add8816ba696471","status":"affected","versionType":"git"},{"version":"2de6c8de192b9341ffa5e84afe1ce6196d4eef41","lessThan":"e2cacec7d4291300a282feb3af8eba57b93b15aa","status":"affected","versionType":"git"},{"version":"2de6c8de192b9341ffa5e84afe1ce6196d4eef41","lessThan":"b646e54d23b9b592d612a2036aab14e0f6c14206","status":"affected","versionType":"git"},{"version":"2de6c8de192b9341ffa5e84afe1ce6196d4eef41","lessThan":"30868a6a5238849d554295aff3ce61d242d7fad8","status":"affected","versionType":"git"},{"version":"2de6c8de192b9341ffa5e84afe1ce6196d4eef41","lessThan":"7aac0a30dcf41cdb510526740d9a2ab1520c5d98","status":"affected","versionType":"git"},{"version":"2de6c8de192b9341ffa5e84afe1ce6196d4eef41","lessThan":"c94ede3c436dfbd9cedd9cb69f604f6fc901b6a2","status":"affected","versionType":"git"},{"version":"2de6c8de192b9341ffa5e84afe1ce6196d4eef41","lessThan":"852475278ca5e96e0c0275950e1a84203e602b33","status":"affected","versionType":"git"},{"version":"2de6c8de192b9341ffa5e84afe1ce6196d4eef41","lessThan":"69d26698e4fd44935510553809007151b2fe4db5","status":"affected","versionType":"git"}]},{"product":"Linux","vendor":"Linux","defaultStatus":"affected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/block/rnbd/rnbd-srv.c"],"versions":[{"version":"5.8","status":"affected"},{"version":"0","lessThan":"5.8","status":"unaffected","versionType":"semver"},{"version":"5.10.252","lessThanOrEqual":"5.10.*","status":"unaffected","versionType":"semver"},{"version":"5.15.202","lessThanOrEqual":"5.15.*","status":"unaffected","versionType":"semver"},{"version":"6.1.165","lessThanOrEqual":"6.1.*","status":"unaffected","versionType":"semver"},{"version":"6.6.128","lessThanOrEqual":"6.6.*","status":"unaffected","versionType":"semver"},{"version":"6.12.75","lessThanOrEqual":"6.12.*","status":"unaffected","versionType":"semver"},{"version":"6.18.16","lessThanOrEqual":"6.18.*","status":"unaffected","versionType":"semver"},{"version":"6.19.6","lessThanOrEqual":"6.19.*","status":"unaffected","versionType":"semver"},{"version":"7.0","lessThanOrEqual":"*","status":"unaffected","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.8","versionEndExcluding":"5.10.252"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.8","versionEndExcluding":"5.15.202"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.8","versionEndExcluding":"6.1.165"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.8","versionEndExcluding":"6.6.128"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.8","versionEndExcluding":"6.12.75"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.8","versionEndExcluding":"6.18.16"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.8","versionEndExcluding":"6.19.6"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.8","versionEndExcluding":"7.0"}]}]}],"references":[{"url":"https://git.kernel.org/stable/c/e4272754063d52c9ad0169865add8816ba696471"},{"url":"https://git.kernel.org/stable/c/e2cacec7d4291300a282feb3af8eba57b93b15aa"},{"url":"https://git.kernel.org/stable/c/b646e54d23b9b592d612a2036aab14e0f6c14206"},{"url":"https://git.kernel.org/stable/c/30868a6a5238849d554295aff3ce61d242d7fad8"},{"url":"https://git.kernel.org/stable/c/7aac0a30dcf41cdb510526740d9a2ab1520c5d98"},{"url":"https://git.kernel.org/stable/c/c94ede3c436dfbd9cedd9cb69f604f6fc901b6a2"},{"url":"https://git.kernel.org/stable/c/852475278ca5e96e0c0275950e1a84203e602b33"},{"url":"https://git.kernel.org/stable/c/69d26698e4fd44935510553809007151b2fe4db5"}],"title":"rnbd-srv: Zero the rsp buffer before using it","x_generator":{"engine":"bippy-1.2.0"}}}}