Integer overflow in Linux kernel - CVE-2026-53133
Published: June 26, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to integer overflow in __rdma_block_iter_next() in the RDMA umem block iterator when reassembling split scatter-gather entries during IOMMU-backed mapping linearization. A local user can trigger processing of a very large mapped block to cause a denial of service.
The issue occurs for block sizes greater than or equal to 4G when a single large block is split across multiple scatter-gather entries.
How to mitigate CVE-2026-53133
Sources
- https://git.kernel.org/stable/c/15fe76e23615f502d051ef0768f86babaf08746c
- https://git.kernel.org/stable/c/2ff4b7817e5b78070c30f5fb5e678e452a2628b3
- https://git.kernel.org/stable/c/8fe0231adebe086c8a459c790944ac026cd99c6e
- https://git.kernel.org/stable/c/ac1aad8e1281534ce936c250f68084fc79c5469e
- https://git.kernel.org/stable/c/afd35fec9297195b759078745549c2671223f24f
- https://git.kernel.org/stable/c/baf8685bcf56dc1efb44b8f6a57c42516e549068
- https://git.kernel.org/stable/c/cc644d5608e3b0dadc970bd6e6aa26b91ea07d0f
- https://git.kernel.org/stable/c/dee2a49adeeb2a5e16a3fc858fa21b841c519802