-

CVE-2026-92505

iommu/amd: Fix undefined behavior in devid_write debugfs function

In the Linux kernel, the following vulnerability has been resolved:

iommu/amd: Fix undefined behavior in devid_write debugfs function

When for_each_pci_segment() loop completes without finding a matching
segment, the pci_seg pointer is not NULL but points to an invalid memory
location (the list head). Accessing pci_seg->id after the loop causes
undefined behavior.

Fix this by handling the successful case inside the loop and returning
-EINVAL after the loop if no matching segment is found.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 2e98940f123d9c69d4759078aea9a536244c98d3
Version < 8aabe0fba01486b5d893e708b05a8fa7f1b7efbb
Status affected
Version 2e98940f123d9c69d4759078aea9a536244c98d3
Version < 99d42aef089a07cfb1d404a7227ac9dc7628b497
Status affected
Version 2e98940f123d9c69d4759078aea9a536244c98d3
Version < 843e149989665f8309ad2efe6048dc76591e1f94
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.17
Status affected
Version 0
Version < 6.17
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.099
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/8aabe0fba01486b5d893e708b05a8fa7f1b7efbb
https://git.kernel.org/stable/c/99d42aef089a07cfb1d404a7227ac9dc7628b497
https://git.kernel.org/stable/c/843e149989665f8309ad2efe6048dc76591e1f94