CyberRota Analysis
AI-GeneratedThe vulnerability in the Linux kernel allows userspace applications to allocate excessively large event queues via the iommufd_veventq_alloc() function, potentially exhausting kernel memory reserves. This could lead to denial-of-service conditions, impacting system stability and performance. Linux system administrators and developers should prioritize this issue to mitigate potential resource exhaustion risks.
Original NVD Description
In the Linux kernel, the following vulnerability has been resolved: iommufd: Set veventq_depth upper bound iommufd_veventq_alloc() accepts any !0 veventq_depth from userspace, with an upper bound at U32_MAX. This leaves a vulnerability where userspace can allocate excessively large queues to exhaust kernel memory reserves. Cap the veventq_depth (maximum number of entries) to 1 << 19, matching the maximum number of entries in the SMMUv3 EVTQ (the largest use case today).
Related CVEs
Other vulnerabilities affecting the same vendor(s)