From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from smtp.kernel.org (aws-us-west-2-korg-mail-alma10-1.taild15c8.ts.net [100.103.45.18]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 9D66350EBE6 for ; Fri, 4 Sep 2026 16:50:25 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=100.103.45.18 ARC-Seal:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1788540627; cv=none; b=BfHsOsLGMcwxr7KeEh/yWJ80GW76ztJjNaX63Be+36IJEQqXbrHHVbUo8oLkTKGLiuNbqHFU8ZirADII4LTpeqLcGHMwESRcOPGv3PWA7ZSWueULCjrV7MqTnRpf+tvG3PrI/qdyNfZmVAEMtU88MxCkURVgdY01nyiNE0jmzXs= ARC-Message-Signature:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1788540627; c=relaxed/simple; bh=w2GCu6r6AQSDtZ0SMrN6ZBhkmWUKo+Wk2jhpG/BZm6Q=; h=From:To:Cc:Subject:Date:Message-ID:MIME-Version; b=Rge871GTDh+mhaLxDXbpViH6SRzZCetpiUUeZeC5DnUhqnYxO6A8piTww3JmqrsasyPKn8DZb7T+0fpF2sNtHz562Nplx/Jc62FOSEcx4pjIFvIute0t3/o0YJcjE2Mk5VK+/QQFROlHLpZu1EnYdgJ/Pkj2u0Cpp2drgKimQPY= ARC-Authentication-Results:i=1; smtp.subspace.kernel.org; dkim=pass (1024-bit key) header.d=linuxfoundation.org header.i=@linuxfoundation.org header.b=JpnpByUH; arc=none smtp.client-ip=100.103.45.18 Authentication-Results: smtp.subspace.kernel.org; dkim=pass (1024-bit key) header.d=linuxfoundation.org header.i=@linuxfoundation.org header.b="JpnpByUH" Received: by smtp.kernel.org (Postfix) with ESMTPSA id 762D31F00A3F; Fri, 4 Sep 2026 16:50:23 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=linuxfoundation.org; s=korg; t=1788540625; bh=23FvXN5vuz4cYhl4QKfPbnVnukDzwAJJUL/sWMO1vIA=; h=From:To:Cc:Subject:Date:Reply-To; b=JpnpByUHHYm/ZivsI9vdZdS9nmcvJOmk9nIGGBEDc8PXV7S/SxIuVcXNMw4l9gHQJ zIeOpI2MKDjJ7qK5cZ/yVQhniISQ1yjmADfMCQYGL1I8cxDdpPKIhmqqOLmD+fd16Z flLTF29Sb6AKrR/fVqMbKLLKFJwNbCD8d73ZvZps= From: Greg Kroah-Hartman To: linux-cve-announce@vger.kernel.org Cc: Greg Kroah-Hartman Subject: CVE-2026-80867: alpha/PCI: Add security_locked_down() check to pci_mmap_resource() Date: Fri, 4 Sep 2026 18:46:34 +0200 Message-ID: <2026090433-CVE-2026-80867-b016@gregkh> X-Mailer: git-send-email 2.55.0 Reply-To: , Precedence: bulk X-Mailing-List: linux-cve-announce@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: MIME-Version: 1.0 X-Developer-Signature: v=1; a=openpgp-sha256; l=3526; i=gregkh@linuxfoundation.org; h=from:subject:message-id; bh=7RdgYd/9mJ0g2H9aGgwg0NCWSG0B0HUvMLB4A3k2P24=; b=owGbwMvMwCRo6H6F97bub03G02pJDFmzvr6cMDPe782sZVq576I93z/pjDUXanh14qr3jfOBC gGr2QsCOmJZGASZGGTFFFm+bOM5ur/ikKKXoe1pmDmsTCBDGLg4BWAi/8sZ5mncnht27EnE+wyn jeGHZ6k1cyk2BTIsWMYnbf6uXixA4dSTKV57vafekRGYAQA= X-Developer-Key: i=gregkh@linuxfoundation.org; a=openpgp; fpr=F4B60CC5BF78C2214A313DCB3147D40DDB2DFB29 Content-Transfer-Encoding: 8bit From: Greg Kroah-Hartman Description =========== In the Linux kernel, the following vulnerability has been resolved: alpha/PCI: Add security_locked_down() check to pci_mmap_resource() Currently, Alpha's pci_mmap_resource() does not check security_locked_down(LOCKDOWN_PCI_ACCESS) before allowing userspace to mmap PCI BARs. The generic version has had this check since commit eb627e17727e ("PCI: Lock down BAR access when the kernel is locked down") to prevent DMA attacks when the kernel is locked down. Add the same check to Alpha's pci_mmap_resource(). The Linux kernel CVE team has assigned CVE-2026-80867 to this issue. Affected and fixed versions =========================== Issue introduced in 5.4 with commit eb627e17727ebeede70697ae1798688b0d328b54 and fixed in 5.10.261 with commit 6e368485a1ac19fbde0a8b6a332d4545ae72a8ac Issue introduced in 5.4 with commit eb627e17727ebeede70697ae1798688b0d328b54 and fixed in 5.15.212 with commit ed2cd1fee0ed16a1c2dff49175e65c641eb8ae2b Issue introduced in 5.4 with commit eb627e17727ebeede70697ae1798688b0d328b54 and fixed in 6.1.178 with commit c3234efe21d4198945492cf7dba6859476f0f6ff Issue introduced in 5.4 with commit eb627e17727ebeede70697ae1798688b0d328b54 and fixed in 6.6.145 with commit 4de5ff924c0a8ef8166c1a68af9087826e1e8d61 Issue introduced in 5.4 with commit eb627e17727ebeede70697ae1798688b0d328b54 and fixed in 6.12.97 with commit 85f966b1120874fe530edec50d28373ceb06ebcd Issue introduced in 5.4 with commit eb627e17727ebeede70697ae1798688b0d328b54 and fixed in 6.18.40 with commit 94defb18ac792fd16407d5a52ad0d3f5055c4b43 Issue introduced in 5.4 with commit eb627e17727ebeede70697ae1798688b0d328b54 and fixed in 7.1.5 with commit 257b55dc3d18d7ef01f62a8ff7317871f7597e28 Issue introduced in 5.4 with commit eb627e17727ebeede70697ae1798688b0d328b54 and fixed in 7.2 with commit 78a228f0aa0e9eba31955950c8a40a9945e2c8bb Please see https://www.kernel.org for a full list of currently supported kernel versions by the kernel community. Unaffected versions might change over time as fixes are backported to older supported kernel versions. The official CVE entry at https://cve.org/CVERecord/?id=CVE-2026-80867 will be updated if fixes are backported, please check that for the most up to date information about this issue. Affected files ============== The file(s) affected by this issue are: arch/alpha/kernel/pci-sysfs.c Mitigation ========== The Linux kernel CVE team recommends that you update to the latest stable kernel version for this, and many other bugfixes. Individual changes are never tested alone, but rather are part of a larger kernel release. Cherry-picking individual commits is not recommended or supported by the Linux kernel community at all. If however, updating to the latest release is impossible, the individual changes to resolve this issue can be found at these commits: https://git.kernel.org/stable/c/6e368485a1ac19fbde0a8b6a332d4545ae72a8ac https://git.kernel.org/stable/c/ed2cd1fee0ed16a1c2dff49175e65c641eb8ae2b https://git.kernel.org/stable/c/c3234efe21d4198945492cf7dba6859476f0f6ff https://git.kernel.org/stable/c/4de5ff924c0a8ef8166c1a68af9087826e1e8d61 https://git.kernel.org/stable/c/85f966b1120874fe530edec50d28373ceb06ebcd https://git.kernel.org/stable/c/94defb18ac792fd16407d5a52ad0d3f5055c4b43 https://git.kernel.org/stable/c/257b55dc3d18d7ef01f62a8ff7317871f7597e28 https://git.kernel.org/stable/c/78a228f0aa0e9eba31955950c8a40a9945e2c8bb