A vulnerability was found in Linux Kernel up to 6.18.38/7.1.3. It has been rated as very critical. This vulnerability affects the function iommufd_veventq_fops_read of the component iommufd. This manipulation of the argument data_len causes buffer overflow.

The identification of this vulnerability is CVE-2026-64293. It is possible to initiate the attack remotely. There is no exploit available.

Upgrading the affected component is advised.