9.3

CVE-2026-80551

s390/vfio_ccw: Ensure first IDAW remains constant

In the Linux kernel, the following vulnerability has been resolved:

s390/vfio_ccw: Ensure first IDAW remains constant

The first IDAW in a list does not need to be on a 2K/4K boundary
like all others, and so is read separately to accurately calculate
the size of the buffer needed to read the full IDAL.

Verify that the address found in the first IDAW is unchanged between
reads, to ensure a consistent set of IDAWs being worked with.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 01aa26c672c0eb771de4aaa2a8ccf6055778887b
Version < 460b977a4e71cc319fdadf91c193ec3beaa57263
Status affected
Version 01aa26c672c0eb771de4aaa2a8ccf6055778887b
Version < 0d46c2565f173bcddcdcaf44a4f69789a20535e2
Status affected
Version 01aa26c672c0eb771de4aaa2a8ccf6055778887b
Version < 08ef2a82115690d6e229615872ac1731af732497
Status affected
Version 01aa26c672c0eb771de4aaa2a8ccf6055778887b
Version < fc59e9482117ebdccd6dc7fa8082f8b980fd021e
Status affected
Version 01aa26c672c0eb771de4aaa2a8ccf6055778887b
Version < 565bef268d75bf7df665bce6923a88cd0eb74592
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 5.3
Status affected
Version 0
Version < 5.3
Status unaffected
Version <= 6.6.*
Version 6.6.154
Status unaffected
Version <= 6.12.*
Version 6.12.105
Status unaffected
Version <= 6.18.*
Version 6.18.46
Status unaffected
Version <= 7.1.*
Version 7.1.10
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.14% 0.04
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
416baaa9-dc9f-4396-8d5f-8c081fb06d67 9.3 2.5 6
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/0d46c2565f173bcddcdcaf44a4f69789a20535e2
https://git.kernel.org/stable/c/08ef2a82115690d6e229615872ac1731af732497
https://git.kernel.org/stable/c/fc59e9482117ebdccd6dc7fa8082f8b980fd021e
https://git.kernel.org/stable/c/565bef268d75bf7df665bce6923a88cd0eb74592
https://git.kernel.org/stable/c/460b977a4e71cc319fdadf91c193ec3beaa57263