PT-2026-52260 · Linux+1 · Linux Kernel+1
CVE-2026-53164
·
Published
2026-06-25
·
Updated
2026-09-07
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the
iommu dma iova link swiotlb() function when processing unaligned mappings divided into head, middle, and trailer parts. If the middle section is empty due to a lack of aligned pages, the system calls iommu map() with a size of 0, which the iommupt implementation treats as illegal. This leads to an incorrect error unwind process that corrupts the mapping, eventually triggering a WARN ON during destruction. This condition is frequently encountered with certain Thunderbolt NVMe drives that force the use of SWIOTLB (Software Input Output Translation Lookaside Buffer) for unaligned memory, particularly when smartctl passthrough commands provide oddly aligned buffers.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel
Ubuntu