Impact
The Linux kernel's Nouveau driver contains a flaw where the DMA unmap size is mismatched for large compound folios during device migration. The driver records the full mapping size but later unmaps only a single PAGE_SIZE, leaving part of the IOMMU/IOVA mapping active. This improper resource cleanup can allow other devices or processes to access unmapped memory, effectively leaking data.
Affected Systems
All Linux kernels that include the affected version of the Nouveau driver are vulnerable when Transparent HugePages are enabled for device migration. The vulnerability applies to any kernel compiled before the patch. It is inferred that systems using NVIDIA graphics hardware with the Nouveau driver enabled may be affected, though the CVE data does not explicitly mention hardware.
Risk and Exploitability
The CVSS score of 8.8 indicates high severity, while the EPSS score of < 1% suggests that exploitation is unlikely at present. The vulnerability is not in the CISA KEV catalog. Based on the description, it is inferred that an attacker would need local kernel privileges or sufficient device access to trigger migration or copy operations on the GPU. The overall risk remains moderate, primarily affecting environments with privileged GPU usage and insufficient IOMMU isolation.
OpenCVE Enrichment