ISOMAN

CVE

CVE-2026-4652

On a system exposing an NVMe/TCP target, a remote client can trigger a kernel panic by sending a CONNECT command for an I/O queue with a bogus or stale CNTLID. An attacker with network access to the NVMe/TCP target can trigger an unauthenticated Denial of Service condition on the affected machine.

Severity
HIGH
CVSS
7.5
Published
Modified

Linked Releases

References

  1. https://security.freebsd.org/advisories/FreeBSD-SA-26:07.nvmf.asc