In the Linux kernel, the following vulnerability has been resolved: drm/xe: fix UAF around queue destruction We currently do stuff like queuing the final destruction step on a random system wq, whi…
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: drm/xe: fix UAF around queue destruction We currently do stuff like queuing the final destruction step on a random system wq, which will outlive the driver instance. With bad timing we can teardown the driver with one or more work workqueue still being alive leading to various UAF splats. Add a fini step to ensure user queues are properly torn down. At this point GuC should already be nuked so queue itself should no longer be…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/272b0e78874586d6ccae04079d75b27b47705544 Patch
- https://git.kernel.org/stable/c/2d2be279f1ca9e7288282d4214f16eea8a727cdb Patch
- https://git.kernel.org/stable/c/421c74670b0f9d5c007f1276d3647aa58f407fde Patch
Timeline
- nvd_ingest NVD