Bug 2320732 (CVE-2022-48990) - CVE-2022-48990 kernel: drm/amdgpu: fix use-after-free during gpu recovery
Summary: CVE-2022-48990 kernel: drm/amdgpu: fix use-after-free during gpu recovery
Keywords:
Status: NEW
Alias: CVE-2022-48990
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2024-10-21 21:05 UTC by OSIDB Bzimport
Modified: 2024-10-22 08:39 UTC (History)
4 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2024-10-21 21:05:41 UTC
In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: fix use-after-free during gpu recovery

[Why]
    [  754.862560] refcount_t: underflow; use-after-free.
    [  754.862898] Call Trace:
    [  754.862903]  <TASK>
    [  754.862913]  amdgpu_job_free_cb+0xc2/0xe1 [amdgpu]
    [  754.863543]  drm_sched_main.cold+0x34/0x39 [amd_sched]

[How]
    The fw_fence may be not init, check whether dma_fence_init
    is performed before job free

Comment 1 Avinash Hanwate 2024-10-22 06:23:23 UTC
Upstream advisory:
https://lore.kernel.org/linux-cve-announce/2024102148-CVE-2022-48990-1cf1@gregkh/T


Note You need to log in before you can comment on or make changes to this bug.