Vulnerability CVE-2023-52801


Published: 2024-05-21

Description:
In the Linux kernel, the following vulnerability has been resolved:

iommufd: Fix missing update of domains_itree after splitting iopt_area

In iopt_area_split(), if the original iopt_area has filled a domain and is
linked to domains_itree, pages_nodes have to be properly
reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.

 References:
https://git.kernel.org/stable/c/836db2e7e4565d8218923b3552304a1637e2f28d
https://git.kernel.org/stable/c/fcb32111f01ddf3cbd04644cde1773428e31de6a
https://git.kernel.org/stable/c/e7250ab7ca4998fe026f2149805b03e09dc32498

Copyright 2026, cxsecurity.com

 

Back to Top