Re: [PATCH v8 2/2] misc: ibmasm: Fix dynamic out-of-bounds MMIO access via malicious MFA
From: Greg KH
Date: Fri Jul 31 2026 - 07:20:47 EST
On Sat, Jul 18, 2026 at 03:32:53PM +0800, Mingyu Wang wrote:
> The ibmasm driver reads dynamic Message Frame Addresses (MFA) from
> hardware queues and uses them directly as offsets to dereference I2O
> messages via get_i2o_message().
Ah, this is I2O hardware. Wow, I don't think that's even around
anymore, is it? Do you have access to it to test this?
thanks,
greg k-h