Database/Control plane, storage & DevOps
Linux iommu/amd - IRQ-unsafe locking in guest domain allocation: An IRQ-unsafe lock taken during AMD IOMMU guest domain
UnscoredCVE-2026-68347Control plane, storage & DevOpscurated
Impact
An IRQ-unsafe lock taken during AMD IOMMU guest domain allocation can deadlock the host. Guest domain allocation happens when you attach a device to a VM - so this fires on the GPU passthrough path, wedging the host at exactly the moment you are provisioning a tenant's accelerator.
Who can reach it
Local, on the IOMMU guest-domain allocation path - reachable by whatever attaches devices to guests, i.e. the VMM or the orchestrator.
What to do
Fixed in the Linux kernel. Distro kernel update plus reboot; no firmware step.
References
Related entries
- Linux perf/x86/amd/core - Branch Sampling enabled from the SVM reload path: Branch Sampling and Last Branch RecordCVE-2026-72325 · Linux perf/x86/amd/core - Branch Sampling enabled from the SVM reload pathUnscored
- Linux kernel NFSv4 client: a delayed FREE_STATEID can use a freed nfs_serverCVE-2026-74730 · Linux kernel NFSv4 client (nfs_server lifetime across FREE_STATEID)Unscored
- NVMe/TCP host: a short read is reported to userspace as a complete readCVE-2026-89480 · Linux kernel nvme-tcp host (short-read completion accounting)Unscored
- NVMe/TCP host: a malicious target can read host kernel memory by sending R2T for a READCVE-2026-89481 · Linux kernel nvme-tcp host (R2T direction check)Unscored
- NVMe/TCP host: C2HData for a WRITE_ZEROES command writes into a stale iteratorCVE-2026-89482 · Linux kernel nvme-tcp host (C2HData receive gate, WRITE_ZEROES path)Unscored
- Linux kernel nvme: discard fallback page is never zeroed, leaking kernel memory to the controllerCVE-2026-89483 · Linux kernel nvme core (DSM discard fallback page)Unscored
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.