CVE-2026-53372

high

Description

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Block PASID attachment to nested domain with dirty tracking Kernel lacks dirty tracking support on nested domain attached to PASID, fails the attachment early if nesting parent domain is dirty tracking configured, otherwise dirty pages would be lost.

References

https://git.kernel.org/stable/c/cc5bd898ff70710ffc41cd8e5c2741cb64750047

https://git.kernel.org/stable/c/9009c1af5458322469fa9a4371081a4449c5947d

https://git.kernel.org/stable/c/3ea9ce757bd3de955b56e7bc5672fc479e40b045

Details

Source: Mitre, NVD

Published: 2026-07-19

Updated: 2026-07-19

Risk Information

CVSS v2

Base Score: 6.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:C

Severity: Medium

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00166