CVE-2026-90388: fallo de gravedad alta en Linux
iommu/dma: Check atomic pool allocation result directly
Publicada el · Actualizada el
21Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 7.8epss 0.2%
probabilidad de explotación
0.2%top 93% de las CVE
explotación observada
noninguna fuente lo reporta
In the Linux kernel, the following vulnerability has been resolved:
iommu/dma: Check atomic pool allocation result directly
The non-blocking, non-coherent allocation path uses dma_alloc_from_pool(),
which returns the allocated page and fills cpu_addr only on success.
Do not rely on cpu_addr to detect allocation failure in this path. Check
the returned page directly before using it for the IOMMU mapping.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Productos afectados
Linux · LinuxCVEs relacionadas — Linux
En el mismo producto, de las más peligrosas a las menos.
CVE-2024-53197HIGHALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devicesEPSS 4.1%KEVCVE-2026-31431HIGHcrypto: algif_aead - Revert to operating out-of-placeEPSS 3.4%KEVCVE-2024-53104HIGHmedia: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_formatEPSS 3.4%KEVCVE-2025-39682CRITICALtls: fix handling of zero-length records on the rx_listEPSS 2.9%KEVCVE-2024-36971HIGHnet: fix __dst_negative_advice() raceEPSS 2.7%KEVCVE-2024-53150HIGHALSA: usb-audio: Fix out of bounds reads when finding clock sourcesEPSS 1.4%KEV
Referencias
https://git.kernel.org/stable/c/06dffc96693083dda3412311406e558cf27f1574https://git.kernel.org/stable/c/8c486293ddd0af60991408149fc3e964ea888dc4https://git.kernel.org/stable/c/a4ace31d732b657d774e31fb444c0c27d42c78e5https://git.kernel.org/stable/c/ac9cd0a669b8be5d178dbd471b0d68039dac58b5https://git.kernel.org/stable/c/af95a0ebc0a0db0762be75f51eadf770bad01aaahttps://git.kernel.org/stable/c/d56c3f955b21e5764c1497e295a5b5d0b3a40470https://git.kernel.org/stable/c/db46cb9da83a507d86d2bb080bdb09c865da3d0ahttps://git.kernel.org/stable/c/fb0b39287ba894dbdfac2901c51788b63f5c2291