๐Ÿ” CVE Alert

CVE-2026-89453

UNKNOWN 0.0

iommu/amd: Put PCI device after handling PPR faults

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Put PCI device after handling PPR faults iommu_call_iopf_notifier() looks up the requester with pci_get_domain_bus_and_slot(), which returns a PCI device with its reference count incremented. Neither the successful iommu_report_device_fault() path nor the abort path drops that reference, so every handled PPR request leaks a PCI device reference. This is the same ownership rule that was fixed for the old iommu_v2 ppr_notifier() path by commit 6cf0981c2233 ("iommu/amd: Fix pci device refcount leak in ppr_notifier()"), but iommu_call_iopf_notifier() was added later as a separate PPR/IOPF notifier path. Drop the PCI device reference after handling the PPR entry.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
978d626b8f1a239acc635323d731c77eae54eb61 < 1de4443f85e4405af00153cdf8ba73ff12a65036 978d626b8f1a239acc635323d731c77eae54eb61 < cfc5c1b2caa176dfd40b873a6ff07b11da34cc3e 978d626b8f1a239acc635323d731c77eae54eb61 < d1470e16c1977e6c94fadf6048deafaa4d150fec 978d626b8f1a239acc635323d731c77eae54eb61 < af3b69b16383fbc8fe5f61b5b0150d2e41ede71f
Linux / Linux
6.10

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/1de4443f85e4405af00153cdf8ba73ff12a65036 git.kernel.org: https://git.kernel.org/stable/c/cfc5c1b2caa176dfd40b873a6ff07b11da34cc3e git.kernel.org: https://git.kernel.org/stable/c/d1470e16c1977e6c94fadf6048deafaa4d150fec git.kernel.org: https://git.kernel.org/stable/c/af3b69b16383fbc8fe5f61b5b0150d2e41ede71f