CVE-2026-80582
7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Summary
In the Linux kernel, the following vulnerability has been resolved:
drm/shmem_helper: Check VMA boundaries for PMD mappings
In the ->huge_fault handler do not install a PMD huge page mapping if the huge page exceeds the boundaries of the VMA.
All other ->huge_fault handlers have similar checks and the resulting mapping will trigger a VM_BUG_ON_VMA() if it ever reaches copy_pmd_range().
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | fc3bbf34e643faa8678aabdc3810c60109f3435a < 12803e89a1e593fd1e784dfe7453f5e392ccaff2 | affected |
| Linux | Linux | fc3bbf34e643faa8678aabdc3810c60109f3435a < 617bbd08714857c1613d7c550d43a9092ec0fb97 | affected |
| Linux | Linux | 7.0 | affected |
| Linux | Linux | 0 < 7.0 | unaffected |
| Linux | Linux | 7.1.10 <= 7.1.* | unaffected |
| Linux | Linux | 7.2 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/12803e89a1e593fd1e784dfe7453f5e392ccaff2
- https://git.kernel.org/stable/c/617bbd08714857c1613d7c550d43a9092ec0fb97
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.