CVE-2026-89448

Source
https://cve.org/CVERecord?id=CVE-2026-89448
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89448.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-89448
Downstream
Published
2026-09-11T19:43:14Z
Modified
2026-09-12T11:47:00Z
Summary
iommu/vt-d: Force requesting ACS when tboot is enabled
Details

In the Linux kernel, the following vulnerability has been resolved:

iommu/vt-d: Force requesting ACS when tboot is enabled

Currently the conditions of requesting ACS in detect_intel_iommu() don't include tboot, leading to a possible misconfiguration with ACS disabled (e.g. due to user opts) while iommu is later forced on by tboot_force_iommu().

Fix it by checking tboot in detect_intel_iommu().

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89448.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
5d990b627537e59a3a2f039ff588a4750e9c1a6a
Fixed
aaeb81241e802c86be69394f72d49fde3f861fbb
Fixed
45705a6bfdb283f7b3b509010fd617b72f942537
Fixed
87bc611c6c98a41c00feb7b06b0c297dd141a2ae
Fixed
607432b2618b61df81134be0ef2562b8300c1216

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89448.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.33
Fixed
6.12.109
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.50
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89448.json"