SB20260812205 - Out-of-bounds write in Linux kernel iommu intel driver



SB20260812205 - Out-of-bounds write in Linux kernel iommu intel driver

Published: August 12, 2026

Security Bulletin ID SB20260812205
CSH Severity
Low
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Local access
Highest impact Denial of service

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 vulnerability.


1) Out-of-bounds write (CVE-ID: CVE-2026-68324)

CWE-ID: CWE-787 - Out-of-bounds write

CVSSv4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]


The vulnerability allows a local user to cause a denial of service.

The vulnerability exists due to out-of-bounds write in dmar_latency_disable() when disabling latency statistics for a type value greater than 0. A local user can trigger the vulnerable code path to cause a denial of service.

When the type value is greater than 0, the operation writes beyond the end of the allocated array and corrupts adjacent memory.


Remediation

Install update from vendor's website.