7.8

CVE-2026-68245

drm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid()

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: fix lifetime issue of amdgpu_vm_get_task_info_pasid()

The vm pointer returned from amdgpu_vm_get_vm_from_pasid() is only
valid while the lock is still being held. Once xa_unlock_irqrestore is
called and returned, the pointer is no longer under lock and is subject
to modification. Since, the caller still dereferences vm->task_info in
amdgpu_vm_get_task_info_vm() after the lock is removed, this causes a
use after unlock problem.

Remove the lifetime issue present in amdgpu_vm_get_task_info_pasid()
through removing the amdgpu_vm_get_vm_from_pasid() function from
amdgpu_vm.c and making the relevant code inline to hold the lock while
it is still in use.

(cherry picked from commit 9d01579f3f868b333acc901815972685989092c7)
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version b8f67b9ddf4f8fe6dd536590712b5912ad78f99c
Version < fe16a7e5336ae888751984e30c451fbf7cfa5df7
Status affected
Version b8f67b9ddf4f8fe6dd536590712b5912ad78f99c
Version < 1173190412fb9d12e7efce76734118d9712ff970
Status affected
Version b8f67b9ddf4f8fe6dd536590712b5912ad78f99c
Version < 5d5fb9124a2bba96a7807086d8fe0f7ce810d546
Status affected
Version b8f67b9ddf4f8fe6dd536590712b5912ad78f99c
Version < 04cc4aa3617b0ed67e859f91f09de5d896a46f3a
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.9
Status affected
Version 0
Version < 6.9
Status unaffected
Version <= 6.12.*
Version 6.12.101
Status unaffected
Version <= 6.18.*
Version 6.18.42
Status unaffected
Version <= 7.1.*
Version 7.1.6
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.16% 0.06
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
416baaa9-dc9f-4396-8d5f-8c081fb06d67 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/fe16a7e5336ae888751984e30c451fbf7cfa5df7
https://git.kernel.org/stable/c/1173190412fb9d12e7efce76734118d9712ff970
https://git.kernel.org/stable/c/5d5fb9124a2bba96a7807086d8fe0f7ce810d546
https://git.kernel.org/stable/c/04cc4aa3617b0ed67e859f91f09de5d896a46f3a