CVE-2026-64254
Gravedad CVSS v3.1:
MEDIA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
24/07/2026
Última modificación:
17/08/2026
Descripción
*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
NTB: epf: Avoid pci_iounmap() with offset when PEER_SPAD and CONFIG share BAR<br />
<br />
When BAR_PEER_SPAD and BAR_CONFIG share one PCI BAR, the module teardown<br />
path ends up calling pci_iounmap() on the same iomem with some offset,<br />
which is unnecessary and triggers a kernel warning like the following:<br />
<br />
Trying to vunmap() nonexistent vm area (0000000069a5ffe8)<br />
WARNING: mm/vmalloc.c:3470 at vunmap+0x58/0x68, CPU#5: modprobe/2937<br />
[...]<br />
Call trace:<br />
vunmap+0x58/0x68 (P)<br />
iounmap+0x34/0x48<br />
pci_iounmap+0x2c/0x40<br />
ntb_epf_pci_remove+0x44/0x80 [ntb_hw_epf]<br />
pci_device_remove+0x48/0xf8<br />
device_remove+0x50/0x88<br />
device_release_driver_internal+0x1c8/0x228<br />
driver_detach+0x50/0xb0<br />
bus_remove_driver+0x74/0x100<br />
driver_unregister+0x34/0x68<br />
pci_unregister_driver+0x34/0xa0<br />
ntb_epf_pci_driver_exit+0x14/0xfe0 [ntb_hw_epf]<br />
[...]<br />
<br />
Fix it by unmapping only when PEER_SPAD and CONFIG use difference bars.
Impacto
Puntuación base 3.x
5.50
Gravedad 3.x
MEDIA
Productos y versiones vulnerables
| CPE | Desde | Hasta |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.0 (incluyendo) | 6.1.177 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.2 (incluyendo) | 6.6.144 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.7 (incluyendo) | 6.12.95 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.13 (incluyendo) | 6.18.38 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.19 (incluyendo) | 7.1.3 (excluyendo) |
Para consultar la lista completa de nombres de CPE con productos y versiones, ver esta página
Referencias a soluciones, herramientas e información
- https://git.kernel.org/stable/c/06f6dd2ff2bd07eaf7178a807407ff27e85122b4
- https://git.kernel.org/stable/c/81371dbd23601f67f01372817fdbab42c5601e43
- https://git.kernel.org/stable/c/9764a786ba98db58f0725913c369e721253aba33
- https://git.kernel.org/stable/c/a4be4a1308f02bff79a30eea2d04ead5b63685f2
- https://git.kernel.org/stable/c/d876153680e3d721d385e554def919bce3d18c74
- https://git.kernel.org/stable/c/eb47b9bffd07a47b84910847cb5ea066ce184055



