CVE-2023-54034
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/12/2025
Last modified:
29/12/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
iommufd: Make sure to zero vfio_iommu_type1_info before copying to user<br />
<br />
Missed a zero initialization here. Most of the struct is filled with<br />
a copy_from_user(), however minsz for that copy is smaller than the<br />
actual struct by 8 bytes, thus we don&#39;t fill the padding.



