The Linux kernel 6.3 has a use-after-free in iopt_unmap_iova_range in drivers/iommu/iommufd/io_pagetable.c.
https://security.netapp.com/advisory/ntap-20230622-0006/
https://groups.google.com/g/syzkaller/c/G6P9yecsTZ8/m/iiqFVOM9BwAJ
https://lore.kernel.org/linux-iommu/ZDabT%2FuRl%2FjxFhm0%40ip-172-31-85-199.ec2.internal/T/
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=dbe245cdf5189e88d680379ed13901356628b650
https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=804ca14d04df09bf7924bacc5ad22a4bed80c94f
https://bugzilla.suse.com/show_bug.cgi?id=1211597
Source: Mitre, NVD
Published: 2023-05-21
Updated: 2025-03-18
Base Score: 4.3
Vector: CVSS2#AV:L/AC:L/Au:M/C:N/I:N/A:C
Severity: Medium
Base Score: 4.4
Vector: CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
EPSS: 0.00021