CVE-2026-74520 | Linux Kernel up to 6.18.43/7.1.7/7.2-rc5 iommu/iommufd iommufd_fault_iopf_handler/iopf_group_response use after free

SecurityVulns

A vulnerability described as very critical has been identified in Linux Kernel up to 6.18.43/7.1.7/7.2-rc5. The affected element is the function iommufd_fault_iopf_handler/iopf_group_response of the component iommu/iommufd. Such manipulation leads to use after free.

This vulnerability is documented as CVE-2026-74520. The attack needs to be performed locally. There is not any exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More