CVE-2026-80551 PUBLISHED

s390/vfio_ccw: Ensure first IDAW remains constant

Assigner: Linux
Reserved: 26.08.2026 Published: 26.08.2026 Updated: 26.08.2026

In the Linux kernel, the following vulnerability has been resolved:

s390/vfio_ccw: Ensure first IDAW remains constant

The first IDAW in a list does not need to be on a 2K/4K boundary like all others, and so is read separately to accurately calculate the size of the buffer needed to read the full IDAL.

Verify that the address found in the first IDAW is unchanged between reads, to ensure a consistent set of IDAWs being worked with.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 01aa26c672c0eb771de4aaa2a8ccf6055778887b to 0d46c2565f173bcddcdcaf44a4f69789a20535e2 (excl.)
  • affected from 01aa26c672c0eb771de4aaa2a8ccf6055778887b to 08ef2a82115690d6e229615872ac1731af732497 (excl.)
  • affected from 01aa26c672c0eb771de4aaa2a8ccf6055778887b to fc59e9482117ebdccd6dc7fa8082f8b980fd021e (excl.)
  • affected from 01aa26c672c0eb771de4aaa2a8ccf6055778887b to 565bef268d75bf7df665bce6923a88cd0eb74592 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 5.3 is affected
  • unaffected from 0 to 5.3 (excl.)
  • unaffected from 6.12.105 to 6.12.* (incl.)
  • unaffected from 6.18.46 to 6.18.* (incl.)
  • unaffected from 7.1.10 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References