iommupt: Check for missing PAGE_SIZE in the pgsize_bitmap
Published Jul 19, 2026
8.4
HIGHCVSS 3.1
EPSS 0.16%
Description
Sashiko pointed out that the driver could drop PAGE_SIZE from the pgsize_bitmap. That is technically allowed but nothing does it, and such an iommu_domain would not be used with the DMA API today.
Still, it is against the design and it is trivial to fix up. Lift the PT_WARN_ON to the if branch and just skip the fast path.
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 6.19StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<6.19
- Version 7.0.11StatusunaffectedConstraints<=7.0.*
- Version 7.1StatusunaffectedConstraints<=*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
- ≥ 6.19 · < 7.0.11
- 7.1
- 7.1
- 7.1
No data.
Red Hat Enterprise Linux 10
kernel
Not affected
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
References (8)
- https://access.redhat.com/security/cve/CVE-2026-64151 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2502513 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-45836 Advisory
- https://git.kernel.org/stable/c/00850f41da24423587abd6124a790dd4f12bcef3 Patch
- https://git.kernel.org/stable/c/8ef3f77c440005c7f04229a75976bfc078364247 Patch
- https://lore.kernel.org/linux-cve-announce/2026071931-CVE-2026-64151-1bcc@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2026-64151
- https://www.cve.org/CVERecord?id=CVE-2026-64151
Change history (0)
No recorded changes yet.