Bug 2422735 (CVE-2025-68170) - CVE-2025-68170 kernel: drm/radeon: Do not kfree() devres managed rdev
Summary: CVE-2025-68170 kernel: drm/radeon: Do not kfree() devres managed rdev
Keywords:
Status: NEW
Alias: CVE-2025-68170
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2025-12-16 14:07 UTC by OSIDB Bzimport
Modified: 2025-12-16 23:48 UTC (History)
0 users

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2025-12-16 14:07:33 UTC
In the Linux kernel, the following vulnerability has been resolved:

drm/radeon: Do not kfree() devres managed rdev

Since the allocation of the drivers main structure was changed to
devm_drm_dev_alloc() rdev is managed by devres and we shouldn't be calling
kfree() on it.

This fixes things exploding if the driver probe fails and devres cleans up
the rdev after we already free'd it.

(cherry picked from commit 16c0681617b8a045773d4d87b6140002fa75b03b)


Note You need to log in before you can comment on or make changes to this bug.