CVE-2026-53372

Source
https://cve.org/CVERecord?id=CVE-2026-53372
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-53372.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-53372
Downstream
Published
2026-07-19T09:10:32.453Z
Modified
2026-07-21T03:46:28.098501566Z
Summary
iommu/vt-d: Block PASID attachment to nested domain with dirty tracking
Details

In the Linux kernel, the following vulnerability has been resolved:

iommu/vt-d: Block PASID attachment to nested domain with dirty tracking

Kernel lacks dirty tracking support on nested domain attached to PASID, fails the attachment early if nesting parent domain is dirty tracking configured, otherwise dirty pages would be lost.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/53xxx/CVE-2026-53372.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
67f6f56b59126b3bf4fc6f4ea564e450fcfcf9f6
Fixed
3ea9ce757bd3de955b56e7bc5672fc479e40b045
Fixed
9009c1af5458322469fa9a4371081a4449c5947d
Fixed
cc5bd898ff70710ffc41cd8e5c2741cb64750047

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-53372.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.30
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-53372.json"