-

CVE-2026-68233

drm/vc4: Shut down BO cache timer before teardown

In the Linux kernel, the following vulnerability has been resolved:

drm/vc4: Shut down BO cache timer before teardown

The BO cache timer callback schedules time_work, and time_work can rearm
the timer through vc4_bo_cache_free_old().

vc4_bo_cache_destroy() deletes the timer and then cancels the work, which
does not break that cycle: the work being cancelled can rearm the timer,
and the timer then queues work again after teardown.

Use timer_shutdown_sync() instead, so the timer cannot be rearmed and the
cycle ends with cancel_work_sync().
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version c826a6e1064419f78855463cf29ce9e8b9d25bf4
Version < a38f2724eb93a78ba250b01e0caf3468df4d3956
Status affected
Version c826a6e1064419f78855463cf29ce9e8b9d25bf4
Version < bac4c1a9af690b8635c6924872075c41d8763ed9
Status affected
Version c826a6e1064419f78855463cf29ce9e8b9d25bf4
Version < 6273dd3ffb54ec581855b82ae77331b66028249c
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 4.5
Status affected
Version 0
Version < 4.5
Status unaffected
Version <= 6.18.*
Version 6.18.42
Status unaffected
Version <= 7.1.*
Version 7.1.6
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.062
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/a38f2724eb93a78ba250b01e0caf3468df4d3956
https://git.kernel.org/stable/c/bac4c1a9af690b8635c6924872075c41d8763ed9
https://git.kernel.org/stable/c/6273dd3ffb54ec581855b82ae77331b66028249c