Missing Release of Resource after Effective Lifetime in Linux kernel - CVE-2026-89804
Published: September 17, 2026
Vulnerability details
The vulnerability allows a local user to leak IOMMU/IOVA mappings.
The vulnerability exists due to an incorrect DMA unmap size in the nouveau dmem migration teardown paths when unmapping migration buffers. A local user can trigger device-private transparent huge page migration to leak IOMMU/IOVA mappings.
The issue occurs for compound folios with an order greater than 0.