{"id":"CVE-2026-68325","summary":"iommu/amd: Bound the early ACPI HID map","details":"In the Linux kernel, the following vulnerability has been resolved:\n\niommu/amd: Bound the early ACPI HID map\n\nThe ivrs_acpihid command-line parser appends entries to a fixed\nfour-element early_acpihid_map array. Unlike the sibling IOAPIC and HPET\nparsers, it does not reject a fifth entry before incrementing the map size.\n\nCheck the capacity at the common found label before parsing the HID and\nUID or writing the entry.","modified":"2026-08-21T03:30:29.508300675Z","published":"2026-08-10T12:03:01.384Z","database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68325.json","cna_assigner":"Linux"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/030a8e84f8f1b6e96f469c84a13a225c3699910b"},{"type":"WEB","url":"https://git.kernel.org/stable/c/1e31d2394e0db69541b1591d46c5ad6431c81db3"},{"type":"WEB","url":"https://git.kernel.org/stable/c/9ae6b1b972ce01d3316c8a5f7f58c8b3668cc6bb"},{"type":"WEB","url":"https://git.kernel.org/stable/c/abe5d7962f09adada9c4fb25b816dddd3f97c55d"},{"type":"WEB","url":"https://git.kernel.org/stable/c/afe7ea0520c49586703f210865ace2d70b017e48"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e5e0098f8cd82f8b3c8687a8f686309565d51745"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e5ebe8544df1a1c3611739a8622156094fe470df"},{"type":"WEB","url":"https://git.kernel.org/stable/c/fb80117fddb5b477218dc99bb53911b72c3847f8"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68325.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-68325"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"ca3bf5d47cec8b7614bcb2e9132c40081d6d81db"},{"fixed":"9ae6b1b972ce01d3316c8a5f7f58c8b3668cc6bb"},{"fixed":"e5e0098f8cd82f8b3c8687a8f686309565d51745"},{"fixed":"afe7ea0520c49586703f210865ace2d70b017e48"},{"fixed":"1e31d2394e0db69541b1591d46c5ad6431c81db3"},{"fixed":"abe5d7962f09adada9c4fb25b816dddd3f97c55d"},{"fixed":"e5ebe8544df1a1c3611739a8622156094fe470df"},{"fixed":"030a8e84f8f1b6e96f469c84a13a225c3699910b"},{"fixed":"fb80117fddb5b477218dc99bb53911b72c3847f8"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68325.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.7.0"},{"fixed":"5.10.265"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.216"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.183"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.148"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.101"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.42"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.1.6"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68325.json"}}],"schema_version":"1.9.0"}