Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's NVMe over PCI driver can lead to a DMA mapping leak. This issue occurs when the driver fails to allocate a tracking descriptor for both Partial Request Pages (PRP) and Scatter-Gather Lists (SGL), causing the initial DMA mapping to leak during iteration. The problem also arises when the driver encounters an invalid bio_vec while mapping PRPs. The vulnerability affects the stable versions of the Linux kernel.
The vulnerability can cause a memory leak by failing to properly unmap DMA resources, potentially leading to increased memory usage and degradation of system performance.
Users can upgrade to the latest stable version of the Linux kernel to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.