In the Linux kernel, the following vulnerability has been resolved: iommupt: Check for missing PAGE_SIZE in the pgsize_bitmap Sashiko pointed out that the driver could drop PAGE_SIZE from the pgsize_bitmap. That is technically allowed but nothing does it, and such an iommu_domain would not be used with the DMA API today. Still, it is against the design and it is trivial to fix up. Lift the PT_WARN_ON to the if branch and just skip the fast path.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
| Linux | Linux | 6.19CNA affecteddefault affected | |
| Linux | Linux | >= dcd6a011a8d523a114af2360a8753de5bd60c139, < 00850f41da24423587abd6124a790dd4f12bcef3, >= dcd6a011a8d523a114af2360a8753de5bd60c139, < 8ef3f77c440005c7f04229a75976bfc078364247CNA affecteddefault unaffected |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.