SB20260812205 - Out-of-bounds write in Linux kernel iommu intel driver
Published: August 12, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Out-of-bounds write (CVE-ID: CVE-2026-68324)
CWE-ID: CWE-787 - Out-of-bounds write
CVSSv4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to out-of-bounds write in dmar_latency_disable() when disabling latency statistics for a type value greater than 0. A local user can trigger the vulnerable code path to cause a denial of service.
When the type value is greater than 0, the operation writes beyond the end of the allocated array and corrupts adjacent memory.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/0e28ca1c3204b51068579defc904a0dfba5e5c57
- https://git.kernel.org/stable/c/3078d82e7fe9048a2b90a992e71af7cd7ef881fa
- https://git.kernel.org/stable/c/754f8efe45f87e3a9c6871b645b2f9d46d1b407b
- https://git.kernel.org/stable/c/866a35735e56b9dc81cbc33899255134adf6d8b3
- https://git.kernel.org/stable/c/d06fea9b85f038690f55e72fe0c45e113715a85a