CVE-2026-64254

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/07/2026
Last modified:
24/07/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> NTB: epf: Avoid pci_iounmap() with offset when PEER_SPAD and CONFIG share BAR<br /> <br /> When BAR_PEER_SPAD and BAR_CONFIG share one PCI BAR, the module teardown<br /> path ends up calling pci_iounmap() on the same iomem with some offset,<br /> which is unnecessary and triggers a kernel warning like the following:<br /> <br /> Trying to vunmap() nonexistent vm area (0000000069a5ffe8)<br /> WARNING: mm/vmalloc.c:3470 at vunmap+0x58/0x68, CPU#5: modprobe/2937<br /> [...]<br /> Call trace:<br /> vunmap+0x58/0x68 (P)<br /> iounmap+0x34/0x48<br /> pci_iounmap+0x2c/0x40<br /> ntb_epf_pci_remove+0x44/0x80 [ntb_hw_epf]<br /> pci_device_remove+0x48/0xf8<br /> device_remove+0x50/0x88<br /> device_release_driver_internal+0x1c8/0x228<br /> driver_detach+0x50/0xb0<br /> bus_remove_driver+0x74/0x100<br /> driver_unregister+0x34/0x68<br /> pci_unregister_driver+0x34/0xa0<br /> ntb_epf_pci_driver_exit+0x14/0xfe0 [ntb_hw_epf]<br /> [...]<br /> <br /> Fix it by unmapping only when PEER_SPAD and CONFIG use difference bars.

Impact