CVE-2026-68325
N/A
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
iommu/amd: Bound the early ACPI HID map
The ivrs_acpihid command-line parser appends entries to a fixed four-element early_acpihid_map array. Unlike the sibling IOAPIC and HPET parsers, it does not reject a fifth entry before incrementing the map size.
Check the capacity at the common found label before parsing the HID and UID or writing the entry.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | ca3bf5d47cec8b7614bcb2e9132c40081d6d81db < 1e31d2394e0db69541b1591d46c5ad6431c81db3 | affected |
| Linux | Linux | ca3bf5d47cec8b7614bcb2e9132c40081d6d81db < abe5d7962f09adada9c4fb25b816dddd3f97c55d | affected |
| Linux | Linux | ca3bf5d47cec8b7614bcb2e9132c40081d6d81db < e5ebe8544df1a1c3611739a8622156094fe470df | affected |
| Linux | Linux | ca3bf5d47cec8b7614bcb2e9132c40081d6d81db < 030a8e84f8f1b6e96f469c84a13a225c3699910b | affected |
| Linux | Linux | ca3bf5d47cec8b7614bcb2e9132c40081d6d81db < fb80117fddb5b477218dc99bb53911b72c3847f8 | affected |
| Linux | Linux | 4.7 | affected |
| Linux | Linux | 0 < 4.7 | unaffected |
| Linux | Linux | 6.6.148 <= 6.6.* | unaffected |
| Linux | Linux | 6.12.101 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.42 <= 6.18.* | unaffected |
| Linux | Linux | 7.1.6 <= 7.1.* | unaffected |
| Linux | Linux | 7.2-rc5 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/1e31d2394e0db69541b1591d46c5ad6431c81db3
- https://git.kernel.org/stable/c/abe5d7962f09adada9c4fb25b816dddd3f97c55d
- https://git.kernel.org/stable/c/e5ebe8544df1a1c3611739a8622156094fe470df
- https://git.kernel.org/stable/c/030a8e84f8f1b6e96f469c84a13a225c3699910b
- https://git.kernel.org/stable/c/fb80117fddb5b477218dc99bb53911b72c3847f8
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.