SB2026090556 - Function Call with Incorrectly Specified Arguments in Linux kernel iommu iommufd driver



SB2026090556 - Function Call with Incorrectly Specified Arguments in Linux kernel iommu iommufd driver

Published: September 5, 2026

Security Bulletin ID SB2026090556
CSH Severity
Low
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Local access
Highest impact Partial DoS

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 vulnerability.


1) Function Call with Incorrectly Specified Arguments (CVE-ID: CVE-2026-80894)

CWE-ID: CWE-628 - Function Call with Incorrectly Specified Arguments

CVSSv4: 2 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]


The vulnerability allows a local user to prevent automatic responses to IOMMU faults.

The vulnerability exists due to incorrectly specified function arguments in iommufd_hwpt_replace_device() when replacing a device hardware page table. A local user can replace a device hardware page table while faults are pending to prevent automatic responses to IOMMU faults.

The affected fault group is associated with the hardware page table that was attached when fault delivery occurred.


Remediation

Install update from vendor's website.