CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-72495

criticalCVSS 9.3covered by 2 sourcesfirst seen 2026-08-11
In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Avoid repeated requests to allocate WC pages Applications can request multiple WC pages for the same ucontext. As of now, only 1 WC page per ucontext is supported. Add a lock to avoid concurrent access and a check to fail repeated requests. Also, if the mmap entry insert fails for the WC, free the Doorbell page index mapped for the WC page.

CSIRTS triage

What
Repeated allocation requests for work completion pages cause resource waste and potential allocation failures.
Who is affected
Systems using Broadcom RDMA bnxt_re driver.
Urgency
Low severity (CVSS 3.3); not exploited; minor resource efficiency issue.
Action
Apply patch to avoid repeated WC page allocation requests.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-72495

Get an email if CVE-2026-72495 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (2)

External references

NVD record for CVE-2026-72495

CVE.org record

Embed the live status

CVE-2026-72495 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-72495 status](https://www.csirts.com/badge/CVE-2026-72495)](https://www.csirts.com/cve/CVE-2026-72495)