7.8
CVE-2026-89941
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:32:29
- Zuletzt bearbeitet 16.09.2026 15:18:19
- Erkennungen
iio: buffer: Make IIO DMA fence release RCU-safe
In the Linux kernel, the following vulnerability has been resolved: iio: buffer: Make IIO DMA fence release RCU-safe The `dma_fence` documentation states that if a custom release implementation is provided, the `dma_fence` object must be freed in an RCU-safe way. The current `iio_dma_fence` implementation uses `kfree()`, which might result in a use-after-free. Remove the custom `release` implementation. This makes the DMA fence core fall back to `dma_fence_free()`, which calls `kfree_rcu()` on the fence. This requires that the fence be the first member of `struct iio_dma_fence`. Using the default release method for extended DMA fence structures is a common pattern.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
3e26d9f08fbe0b73e951a5e810fdb7a332b7e37f
Version <
311595dc0b5621f74d8eb4dc38ef4efcdfe7e769
Status
affected
Version
3e26d9f08fbe0b73e951a5e810fdb7a332b7e37f
Version <
06a9460b8b792e109cbc934a856d02e5cff217ef
Status
affected
Version
3e26d9f08fbe0b73e951a5e810fdb7a332b7e37f
Version <
11cef99491117d4264603df159c4ff5f3845a059
Status
affected
Version
3e26d9f08fbe0b73e951a5e810fdb7a332b7e37f
Version <
8662e56c31cf23b61ca3d11b516efb94c35b8026
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
6.11
Status
affected
Version
0
Version <
6.11
Status
unaffected
Version <=
6.12.*
Version
6.12.110
Status
unaffected
Version <=
6.18.*
Version
6.18.51
Status
unaffected
Version <=
7.2.*
Version
7.2.5
Status
unaffected
Version <=
*
Version
7.3-rc1
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.16% | 0.055 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
https://git.kernel.org/stable/c/311595dc0b5621f74d8eb4dc38ef4efcdfe7e769
https://git.kernel.org/stable/c/06a9460b8b792e109cbc934a856d02e5cff217ef
https://git.kernel.org/stable/c/11cef99491117d4264603df159c4ff5f3845a059
https://git.kernel.org/stable/c/8662e56c31cf23b61ca3d11b516efb94c35b8026