PT-2026-104905 · Azure Linux · Kernel

Published

2026-09-24

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
PCI/sysfs: Add CAP SYS ADMIN check to resource resize store()
Currently, the resource resize store() allows writing to the resourceN resize sysfs attribute to change a BAR's size without checking for capabilities, currently relying only on the file access check.
Resizing a BAR modifies PCI device configuration and can disrupt active drivers. After the upcoming conversion to static attributes, it will also trigger resource file updates via sysfs update groups().
Add a CAP SYS ADMIN check to prevent unprivileged users from performing BAR resize operations.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-103724

Affected Products

Kernel