Description
In the Linux kernel, the following vulnerability has been resolved:

crypto: sa2ul - stop probe if context pool creation fails

sa_ul_probe() calls sa_init_mem() to create the DMA pool used for
security context buffers, but ignores its return value. If pool creation
fails, probe still continues with DMA setup, algorithm registration and
child population even though later request setup depends on that pool.

Stop probing when sa_init_mem() fails, and route that failure to the PM
cleanup path without attempting to destroy an uncreated DMA pool.
Published: 2026-09-17
Score: n/a
EPSS: < 1% Very Low
KEV: No
Impact: Potential kernel instability or denial of service during initialization
Action: Patch
AI Analysis

Impact

The vulnerability lies in the Linux kernel function sa_ul_probe(), which calls the DMA pool initialization function sa_init_mem() but ignores its return value. If the pool creation fails, the probe continues to configure the crypto module and populate child entries that rely on the allocated pool. This oversight can cause the kernel to reference an unallocated resource, leading to system crashes, memory corruption, or denial of service during boot or when the crypto module is loaded. The defect represents a failure to validate function return values, consistent with CWE-252, and does not provide a direct path for remote code execution.

Affected Systems

All Linux kernel releases that included the sa2ul crypto module prior to the fix. No specific version numbers are listed in the data.

Risk and Exploitability

The CVSS score is not provided and the EPSS score is below 1%, indicating a very low likelihood of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog, further suggesting limited exploitation activity. Because the issue surfaces during module initialization, the attack vector would be a local attacker able to trigger or load the faulty crypto module. Overall risk is moderate due to potential kernel instability, but exploitation probability remains low.

Generated by OpenCVE AI on September 19, 2026 at 07:40 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the latest Linux kernel update that includes the commit fixing sa_ul_probe() to correctly handle DMA pool creation failures.
  • Monitor kernel logs (e.g., dmesg) for errors related to crypto.sa2ul DMA pool initialization after updating.
  • If a kernel update cannot be applied immediately, disable or remove the sa2ul crypto module or configuration to prevent the defective probe from running.

Generated by OpenCVE AI on September 19, 2026 at 07:40 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4817-1 linux-6.12 security update
Debian DSA Debian DSA DSA-6528-1 linux security update
History

Sat, 19 Sep 2026 08:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-252

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: crypto: sa2ul - stop probe if context pool creation fails sa_ul_probe() calls sa_init_mem() to create the DMA pool used for security context buffers, but ignores its return value. If pool creation fails, probe still continues with DMA setup, algorithm registration and child population even though later request setup depends on that pool. Stop probing when sa_init_mem() fails, and route that failure to the PM cleanup path without attempting to destroy an uncreated DMA pool.
Title crypto: sa2ul - stop probe if context pool creation fails
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-17T16:11:53.144Z

Reserved: 2026-09-17T16:02:15.089Z

Link: CVE-2026-93158

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-17T17:18:11.143

Modified: 2026-09-17T17:18:11.143

Link: CVE-2026-93158

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T17:30:07Z

Weaknesses