Database/Control plane, storage & DevOps
Linux iommu/amd - IRQ-unsafe locking in guest domain allocation: An IRQ-unsafe lock taken during AMD IOMMU guest domain
CVE-2026-68347Control plane, storage & DevOpscurated
Impact
An IRQ-unsafe lock taken during AMD IOMMU guest domain allocation can deadlock the host. Guest domain allocation happens when you attach a device to a VM - so this fires on the GPU passthrough path, wedging the host at exactly the moment you are provisioning a tenant's accelerator.
Who can reach it
Local, on the IOMMU guest-domain allocation path - reachable by whatever attaches devices to guests, i.e. the VMM or the orchestrator.
What to do
Fixed in the Linux kernel. Distro kernel update plus reboot; no firmware step.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.