Home

Description

In the Linux kernel, the following vulnerability has been resolved: accel/habanalabs: support mapping cb with vmalloc-backed coherent memory When IOMMU is enabled, dma_alloc_coherent() with GFP_USER may return addresses from the vmalloc range. If such an address is mapped without VM_MIXEDMAP, vm_insert_page() will trigger a BUG_ON due to the VM_PFNMAP restriction. Fix this by checking for vmalloc addresses and setting VM_MIXEDMAP in the VMA before mapping. This ensures safe mapping and avoids kernel crashes. The memory is still driver-allocated and cannot be accessed directly by userspace.

PUBLISHED Reserved 2025-04-16 | Published 2025-12-08 | Updated 2025-12-08 | Assigner Linux

Product status

Default status
unaffected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before 7ec8ac9f73d4a9438c2186768d6de27ace37531e
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before d1dfe21a332d38a6a09658ec29a55940afb5fe36
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before 73c7c2cdb442fc4160d2a2a4bfffbd162af06cb9
affected

1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 (git) before 513024d5a0e34fd34247043f1876b6138ca52847
affected

Default status
affected

6.6.117 (semver)
unaffected

6.12.58 (semver)
unaffected

6.17.8 (semver)
unaffected

6.18 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/7ec8ac9f73d4a9438c2186768d6de27ace37531e

git.kernel.org/...c/d1dfe21a332d38a6a09658ec29a55940afb5fe36

git.kernel.org/...c/73c7c2cdb442fc4160d2a2a4bfffbd162af06cb9

git.kernel.org/...c/513024d5a0e34fd34247043f1876b6138ca52847

cve.org (CVE-2025-40311)

nvd.nist.gov (CVE-2025-40311)

Download JSON