In the Linux kernel, the following vulnerability has been resolved:
intel_th: msu: Fix vmalloced buffers
After commit f5ff79fddf0e ("dma-mapping: remove CONFIG_DMA_REMAP") there's a chance of DMA buffer getting allocated via vmalloc(), which messes up the mmapping code:
> RIP: msc_mmap_fault [intel_th_msu] > Call Trace: > > __do_fault > do_fault ...
Fix this by accounting for vmalloc possibility.