7.8

CVE-2026-89941

iio: buffer: Make IIO DMA fence release RCU-safe

In the Linux kernel, the following vulnerability has been resolved:

iio: buffer: Make IIO DMA fence release RCU-safe

The `dma_fence` documentation states that if a custom release
implementation is provided, the `dma_fence` object must be freed in an
RCU-safe way. The current `iio_dma_fence` implementation uses `kfree()`,
which might result in a use-after-free.

Remove the custom `release` implementation. This makes the DMA fence core
fall back to `dma_fence_free()`, which calls `kfree_rcu()` on the fence.
This requires that the fence be the first member of `struct iio_dma_fence`.

Using the default release method for extended DMA fence structures is a
common pattern.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 3e26d9f08fbe0b73e951a5e810fdb7a332b7e37f
Version < 311595dc0b5621f74d8eb4dc38ef4efcdfe7e769
Status affected
Version 3e26d9f08fbe0b73e951a5e810fdb7a332b7e37f
Version < 06a9460b8b792e109cbc934a856d02e5cff217ef
Status affected
Version 3e26d9f08fbe0b73e951a5e810fdb7a332b7e37f
Version < 11cef99491117d4264603df159c4ff5f3845a059
Status affected
Version 3e26d9f08fbe0b73e951a5e810fdb7a332b7e37f
Version < 8662e56c31cf23b61ca3d11b516efb94c35b8026
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.11
Status affected
Version 0
Version < 6.11
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.51
Status unaffected
Version <= 7.2.*
Version 7.2.5
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.16% 0.055
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
416baaa9-dc9f-4396-8d5f-8c081fb06d67 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/311595dc0b5621f74d8eb4dc38ef4efcdfe7e769
https://git.kernel.org/stable/c/06a9460b8b792e109cbc934a856d02e5cff217ef
https://git.kernel.org/stable/c/11cef99491117d4264603df159c4ff5f3845a059
https://git.kernel.org/stable/c/8662e56c31cf23b61ca3d11b516efb94c35b8026