In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix missing update of domains_itree after splitting iopt_area In iopt_area_split(), if the original iopt_area has filled a domain and is linked to domains_itree, pages_nodes have to be properly reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.
Update Linux/Linux to 836db2e7e4565d8218923b3552304a1637e2f28d; linux/linux_kernel to 836db2e7e456; linux/linux_kernel to fcb32111f01d; linux/linux_kernel to e7250ab7ca49 if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scaniommufd: Fix missing update of domains_itree after splitting iopt_area affects Linux/Linux (generic), Linux/Linux (generic), linux/linux_kernel (generic), linux/linux_kernel (generic), linux/linux_kernel (generic), linux/linux_kernel (generic). Severity is high. In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix missing update of domains_itree after splitting iopt_area In iopt_area_split(), if the original iopt_area has filled a domain and is linked to domains_itree, pages_nodes have to be properly reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric |
In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix missing update of domains_itree after splitting iopt_area In iopt_area_split(), if the original iopt_area has filled a domain and is linked to domains_itree, pages_nodes have to be properly reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.
Update Linux/Linux to 836db2e7e4565d8218923b3552304a1637e2f28d; linux/linux_kernel to 836db2e7e456; linux/linux_kernel to fcb32111f01d; linux/linux_kernel to e7250ab7ca49 if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scaniommufd: Fix missing update of domains_itree after splitting iopt_area affects Linux/Linux (generic), Linux/Linux (generic), linux/linux_kernel (generic), linux/linux_kernel (generic), linux/linux_kernel (generic), linux/linux_kernel (generic). Severity is high. In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix missing update of domains_itree after splitting iopt_area In iopt_area_split(), if the original iopt_area has filled a domain and is linked to domains_itree, pages_nodes have to be properly reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric |
| >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <836db2e7e4565d8218923b3552304a1637e2f28d || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <fcb32111f01ddf3cbd04644cde1773428e31de6a || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <e7250ab7ca4998fe026f2149805b03e09dc32498 |
| 836db2e7e4565d8218923b3552304a1637e2f28d, fcb32111f01ddf3cbd04644cde1773428e31de6a, e7250ab7ca4998fe026f2149805b03e09dc32498 |
| Linux/Linuxgeneric | 6.2 | Not reported |
|---|
| linux/linux_kernelgeneric | >=51fe6141f0f6 <836db2e7e456 | 836db2e7e456 |
|---|
| linux/linux_kernelgeneric | >=51fe6141f0f6 <fcb32111f01d | fcb32111f01d |
|---|
| linux/linux_kernelgeneric | >=51fe6141f0f6 <e7250ab7ca49 | e7250ab7ca49 |
|---|
| linux/linux_kernelgeneric | 6..2 | Not reported |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard| >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <836db2e7e4565d8218923b3552304a1637e2f28d || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <fcb32111f01ddf3cbd04644cde1773428e31de6a || >=51fe6141f0f64ae0bbc096a41a07572273e8c0ef <e7250ab7ca4998fe026f2149805b03e09dc32498 |
| 836db2e7e4565d8218923b3552304a1637e2f28d, fcb32111f01ddf3cbd04644cde1773428e31de6a, e7250ab7ca4998fe026f2149805b03e09dc32498 |
| Linux/Linuxgeneric | 6.2 | Not reported |
|---|
| linux/linux_kernelgeneric | >=51fe6141f0f6 <836db2e7e456 | 836db2e7e456 |
|---|
| linux/linux_kernelgeneric | >=51fe6141f0f6 <fcb32111f01d | fcb32111f01d |
|---|
| linux/linux_kernelgeneric | >=51fe6141f0f6 <e7250ab7ca49 | e7250ab7ca49 |
|---|
| linux/linux_kernelgeneric | 6..2 | Not reported |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard