8.8

CVE-2026-64475

vfio/pci: Release the VGA arbiter client on register_device() failure

In the Linux kernel, the following vulnerability has been resolved:

vfio/pci: Release the VGA arbiter client on register_device() failure

The re-order in the Fixes commit below displaced vfio_pci_vga_init() as
the last failure point of what is now vfio_pci_core_register_device()
without introducing an unwind for the VGA arbiter registration.

In current kernels this is mostly benign because vfio_pci_set_decode()
only uses pci_dev state, but the original failure path could leave a
callback with a freed vdev cookie.  The stale registration also becomes
unsafe again once the callback follows drvdata to the vfio device.

Add the required VGA unwind callout.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version 87856f9af04eaacf9848710625a4ffee1d020fa9
Version < 0f2a35a0c7ea7da347b814750eaa78adf3582381
Status affected
Version 4aeec3984ddc853f7c65903bde472ffdef738bae
Version < 8d65decde9afd2bd78bcfffdc0df73b82a0b5509
Status affected
Version 4aeec3984ddc853f7c65903bde472ffdef738bae
Version < ef4c38d30b3744e89eb5048218904bb629ea8d47
Status affected
Version 4aeec3984ddc853f7c65903bde472ffdef738bae
Version < 9e0a3f642e607848669235f5069f35640abbfc88
Status affected
Version 4aeec3984ddc853f7c65903bde472ffdef738bae
Version < 42d758a09d2c46c42357ecde9a5492f015bde2e5
Status affected
Version 4aeec3984ddc853f7c65903bde472ffdef738bae
Version < 52adb2dff7ce3d8430e2bdc5988b618a430def85
Status affected
Version 4aeec3984ddc853f7c65903bde472ffdef738bae
Version < 278a5659c391fe5afe5f9ce1bad1fd24e90144f1
Status affected
Version 4aeec3984ddc853f7c65903bde472ffdef738bae
Version < daedde7f024ecf88bc8e832ed40cf2c795f0796a
Status affected
Version d62dccb417cf972c978bf3c68a7d5e846bcf953e
Status affected
Version 6694b8daffac5a8661071f085608afc78f7acd08
Status affected
Version 5.10.37
Version < 5.10.261
Status affected
Version 5.11.21
Version < 5.12
Status affected
Version 5.12.4
Version < 5.13
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 5.13
Status affected
Version 0
Version < 5.13
Status unaffected
Version <= 5.10.*
Version 5.10.261
Status unaffected
Version <= 5.15.*
Version 5.15.212
Status unaffected
Version <= 6.1.*
Version 6.1.178
Status unaffected
Version <= 6.6.*
Version 6.6.145
Status unaffected
Version <= 6.12.*
Version 6.12.96
Status unaffected
Version <= 6.18.*
Version 6.18.39
Status unaffected
Version <= 7.1.*
Version 7.1.4
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.14% 0.037
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
416baaa9-dc9f-4396-8d5f-8c081fb06d67 8.8 2 6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/0f2a35a0c7ea7da347b814750eaa78adf3582381
https://git.kernel.org/stable/c/8d65decde9afd2bd78bcfffdc0df73b82a0b5509
https://git.kernel.org/stable/c/ef4c38d30b3744e89eb5048218904bb629ea8d47
https://git.kernel.org/stable/c/9e0a3f642e607848669235f5069f35640abbfc88
https://git.kernel.org/stable/c/42d758a09d2c46c42357ecde9a5492f015bde2e5
https://git.kernel.org/stable/c/52adb2dff7ce3d8430e2bdc5988b618a430def85
https://git.kernel.org/stable/c/278a5659c391fe5afe5f9ce1bad1fd24e90144f1
https://git.kernel.org/stable/c/daedde7f024ecf88bc8e832ed40cf2c795f0796a