NONE · 0

CVE-2026-68324

In the Linux kernel, the following vulnerability has been resolved: iommu/intel: Fix out-of-bounds memset in dmar_latency_disable() dmar_latency_disable() intends to zero out only the single latency...

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: iommu/intel: Fix out-of-bounds memset in dmar_latency_disable() dmar_latency_disable() intends to zero out only the single latency_statistic entry for the given type, but the memset size was computed as sizeof(*lstat) * DMAR_LATENCY_NUM, which clears the entire array starting from &lstat[type]. When type > 0, this writes beyond the end of the allocated array, corrupting adjacent memory. Fix by using sizeof(*lstat) to clear only the target entry.

References

FAQ

What is CVE-2026-68324?

CVE-2026-68324 is a documented vulnerability. In the Linux kernel, the following vulnerability has been resolved: iommu/intel: Fix out-of-bounds memset in dmar_latency_disable() dmar_latency_disable() intends to zero out only the single latency...

How severe is CVE-2026-68324?

CVSS scoring is not yet available for CVE-2026-68324. Check NVD for updates.

Is there a patch for CVE-2026-68324?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.