Medium severity5.5NVD Advisory· Published Jul 25, 2026· Updated Aug 17, 2026
CVE-2026-64290
CVE-2026-64290
Description
In the Linux kernel, the following vulnerability has been resolved:
iommufd: Break the loop on failure in iommufd_fault_fops_read()
On a copy_to_user() failure inside the inner list_for_each_entry, only the inner loop breaks; the outer while re-fetches the just-restored fault group and retries the failing copy_to_user() forever, spinning the reader at 100% CPU with fault->mutex held.
Check rc after the inner loop and break the outer while as well.
Affected products
6- osv-coords4 versionspkg:apk/chainguard/linux-gcp-6.18pkg:apk/chainguard/linux-gcp-6.18-bootcpkg:linux/kernelpkg:rpm/opensuse/kernel-source&distro=openSUSE%20Tumbleweed
< 6.18.44-r0+ 3 more
- (no CPE)range: < 6.18.44-r0
- (no CPE)range: < 6.18.44-r0
- (no CPE)range: >= 6.11.0, < 6.12.101
- (no CPE)range: < 7.1.7-1.1
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.