CVE-2026-98004 PUBLISHED

iommu/riscv: Serialize command queue publishing

Assigner: Linux
Reserved: 25.09.2026 Published: 25.09.2026 Updated: 25.09.2026

In the Linux kernel, the following vulnerability has been resolved:

iommu/riscv: Serialize command queue publishing

Serialize command queue publishing so software producer state advances only after a command is written and the hardware tail is updated. Wait for hardware consumption outside the queue lock when the command queue is full so other CPUs are not blocked behind a long poll.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 856c0cfe5c5f6a2cc8d995872eb67bff9c68c57c to 6d4c12ab9ab8db87411c863a54e0e97f9197afde (excl.)
  • affected from 856c0cfe5c5f6a2cc8d995872eb67bff9c68c57c to ca58afa40946acd252a50fa4d4a86f15847a3d7d (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.13 is affected
  • unaffected from 0 to 6.13 (excl.)
  • unaffected from 7.2.7 to 7.2.* (incl.)
  • unaffected from 7.3-rc3 to * (incl.)

References