CVE-2023-52801: iommufd: Fix missing update of domains_itree after splitting iopt_area

Description

In the Linux kernel, the following vulnerability has been resolved:

iommufd: Fix missing update of domains_itree after splitting iopt_area

In iopt_area_split(), if the original iopt_area has filled a domain and is
linked to domains_itree, pages_nodes have to be properly
reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.

Classification

CVE ID: CVE-2023-52801

Affected Products

Vendor: Linux

Product: Linux

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.05% (probability of being exploited)

EPSS Percentile: 17.81% (scored less or equal to compared to others)

EPSS Date: 2025-02-03 (when was this score calculated)

References

https://git.kernel.org/stable/c/836db2e7e4565d8218923b3552304a1637e2f28d
https://git.kernel.org/stable/c/fcb32111f01ddf3cbd04644cde1773428e31de6a
https://git.kernel.org/stable/c/e7250ab7ca4998fe026f2149805b03e09dc32498

Timeline