Description
In the Linux kernel, the following vulnerability has been resolved: iommufd/selftest: Check for overflow in IOMMU_TEST_OP_ADD_RESERVED syzkaller found it could overflow math in the test infrastructure and cause a WARN_ON by corrupting the reserved interval tree. This only effects test kernels with CONFIG_IOMMUFD_TEST. Validate the user input length in the test ioctl.
Product status
f4b20bb34c83dceade5470288f48f94ce3598ada (git) before 4cc829d61f10c20523fd4085c1546e741a792a97
f4b20bb34c83dceade5470288f48f94ce3598ada (git) before e6c122cffcbb2e84d321ec8ba0e38ce8e7c10925
f4b20bb34c83dceade5470288f48f94ce3598ada (git) before b166b8e0a381429fefd9180e67fbc834b3cee82f
f4b20bb34c83dceade5470288f48f94ce3598ada (git) before e6a973af11135439de32ece3b9cbe3bfc043bea8
6.2
Any version before 6.2
6.6.120 (semver)
6.12.64 (semver)
6.18.3 (semver)
6.19 (original_commit_for_fix)
References
git.kernel.org/...c/4cc829d61f10c20523fd4085c1546e741a792a97
git.kernel.org/...c/e6c122cffcbb2e84d321ec8ba0e38ce8e7c10925
git.kernel.org/...c/b166b8e0a381429fefd9180e67fbc834b3cee82f
git.kernel.org/...c/e6a973af11135439de32ece3b9cbe3bfc043bea8