Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4505 articles · 223849 vulns · 37/41 feeds (7d)
← Back to list
—
CVE-2026-53372EXPLOITEDPATCHED
linux · linux_kernel

iommu/vt-d: Block PASID attachment to nested domain with dirty tracking

Description

In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Block PASID attachment to nested domain with dirty tracking Kernel lacks dirty tracking support on nested domain attached to PASID, fails the attachment early if nesting parent domain is dirty tracking configured, otherwise dirty pages would be lost.

Affected Products

VendorProductVersions
linuxlinux_kernel67f6f56b59126b3bf4fc6f4ea564e450fcfcf9f6, 67f6f56b59126b3bf4fc6f4ea564e450fcfcf9f6, 67f6f56b59126b3bf4fc6f4ea564e450fcfcf9f6, 6.13

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
open sourceopen source linux kernelcert_advisory90%

References

  • https://git.kernel.org/stable/c/3ea9ce757bd3de955b56e7bc5672fc479e40b045
  • https://git.kernel.org/stable/c/9009c1af5458322469fa9a4371081a4449c5947d
  • https://git.kernel.org/stable/c/cc5bd898ff70710ffc41cd8e5c2741cb64750047

Related News (6 articles)

Tier B
CERT-FR3d ago
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (25 septembre 2026)
→ No new info (linked only)
Tier B
CERT-FR17d ago
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (11 septembre 2026)
→ No new info (linked only)
Tier B
CERT-FR38d ago
Multiples vulnérabilités dans le noyau Linux d'Ubuntu (21 août 2026)
→ No new info (linked only)
Tier B
BSI Advisories69d ago
[NEU] [mittel] Linux Kernel: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff
→ No new info (linked only)
Tier C
VulDB70d ago
CVE-2026-53372 | Linux Kernel VT-d privilege escalation
→ No new info (linked only)
Tier C
Linux Kernel CVEs70d ago
CVE-2026-53372: iommu/vt-d: Block PASID attachment to nested domain with dirty tracking
→ No new info (linked only)

Discussion (0)

Loading…

CISA KEV❌ No
Actively exploited✅ Yes
Patch available
3ea9ce757bd3de955b56e7bc5672fc479e40b0459009c1af5458322469fa9a4371081a4449c5947dcc5bd898ff70710ffc41cd8e5c2741cb6475004706.18.307.0.77.1
PublishedJul 19, 2026
Last enriched70d agov3
Tags
CVE-2026-53372
Trending Score43
Source articles6
Independent4
Info Completeness9/14
Missing: cvss, epss, cwe, kev, iocs

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-53362EXPKEV
ipv6: account for fraggap on the paged allocation path
Trending: 93
HIGHCVE-2026-53359EXP
KVM: x86: Fix shadow paging use-after-free due to unexpected role
Trending: 63
HIGHCVE-2026-53366EXP
ipv4: account for fraggap on the paged allocation path
Trending: 49
HIGHCVE-2026-53360EXP
KVM: SEV: Require in-GHCB scratch area if GHCB v2+ is in use
Trending: 46
HIGHCVE-2026-64581EXP
xfrm: fix sk_dst_cache double-free in xfrm_user_policy()
Trending: 44

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jul 19, 2026
Actively Exploited
Jul 19, 2026
Exploit Available
Jul 19, 2026
Patch Available
Jul 19, 2026
Discovered by ZDM
Jul 19, 2026
Updated: tags
Jul 19, 2026
Updated: severity, mitreAttack
Jul 19, 2026

Version History

v3
Last enriched 70d ago
v3Tier C70d ago

Updated severity to CRITICAL (from NONE), corrected exploitAvailable to false, and added MITRE ATT&CK technique T1548 (Abuse Elevation Control Mechanism) for privilege escalation.

severitymitreAttack
via VulDB
v2Tier C70d ago

Added CVE-2026-53372 identifier to tags

tags
via Linux Kernel CVEs
v170d ago

Initial creation