-

CVE-2026-98270

drm/amdgpu: check ras and obj before dereference

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: check ras and obj before dereference

nbio_v7_9_handle_ras_controller_intr_no_bifring() dereferences ras and obj
without checking either for NULL. Both amdgpu_ras_get_context() and
amdgpu_ras_find_obj() can return NULL, e.g. during the window between
adev->nbio.ras being set (early in amdgpu_ras_init(), by design, to
enable the fatal-error interrupt as soon as possible) and the PCIE_BIF
ras object actually being created in RAS late_init. Any interrupt in that
window crashes in hard-IRQ context.

This is analogous to commit d190b459b2a4 ("drm/amdgpu: the warning
dereferencing obj for nbio_v7_4"), which fixed the same issue in the
nbio_v7_4 handler.

Found by Linux Verification Center (linuxtesting.org) with SVACE.

(cherry picked from commit c7071767a50a32ed727cf800ac84372429e3b4b3)
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 7692e1ee2446fd1940b5caa6e09779504a58881a
Version < b7c7f07a40037514f8e890aa00f8d7b196d680cf
Status affected
Version 7692e1ee2446fd1940b5caa6e09779504a58881a
Version < fc5f845a291fc8175e6857cd6ad042818da192e8
Status affected
Version 7692e1ee2446fd1940b5caa6e09779504a58881a
Version < 37583946d8751f8e285c467d770ac0b609b82a23
Status affected
Version 7692e1ee2446fd1940b5caa6e09779504a58881a
Version < 315c22712715491f0dfafdaf2c2b437540e68702
Status affected
Version 7692e1ee2446fd1940b5caa6e09779504a58881a
Version < 723d4dc628d764b19cf9efca14b82cca5ff020c9
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.6
Status affected
Version 0
Version < 6.6
Status unaffected
Version <= 6.6.*
Version 6.6.158
Status unaffected
Version <= 6.12.*
Version 6.12.112
Status unaffected
Version <= 6.18.*
Version 6.18.54
Status unaffected
Version <= 7.2.*
Version 7.2.8
Status unaffected
Version <= *
Version 7.3-rc4
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.18% 0.064
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/b7c7f07a40037514f8e890aa00f8d7b196d680cf
https://git.kernel.org/stable/c/fc5f845a291fc8175e6857cd6ad042818da192e8
https://git.kernel.org/stable/c/37583946d8751f8e285c467d770ac0b609b82a23
https://git.kernel.org/stable/c/315c22712715491f0dfafdaf2c2b437540e68702
https://git.kernel.org/stable/c/723d4dc628d764b19cf9efca14b82cca5ff020c9