CVE-2026-68383

Summary

In the Linux kernel, the following vulnerability has been resolved:

drm/xe/guc: Keep scheduler timeline name alive

The scheduler keeps a pointer to the timeline name, but q->name is freed with the exec queue while scheduler fences can still reference it.

Store the name in struct xe_guc_exec_queue so it shares the scheduler's RCU-deferred lifetime.

(cherry picked from commit 41075f0eb5dcbd3b065d15f15ef7bbe9315188e8)

Affected Software

VendorProductVersion RangeStatus
LinuxLinux6bd90e700b4285e6a7541e00f969cab0d696adde < 77fd62412431e8c80ef2ad61466bc76fe425f80aaffected
LinuxLinux6bd90e700b4285e6a7541e00f969cab0d696adde < 299bc6d50b1bed7d1f408391736712f01a0855e2affected
LinuxLinuxb17fcce70733c211cb5dabf54f4f9491920b1d92affected
LinuxLinuxba37807d08bae67de6139346a85650cab5f6145aaffected
LinuxLinux683b0e397dad9f26a42dcacf6f7f545a77ce6c06affected
LinuxLinux6.12.43 < 6.13affected
LinuxLinux6.15.11 < 6.16affected
LinuxLinux6.16.2 < 6.17affected
LinuxLinux6.17affected
LinuxLinux0 < 6.17unaffected
LinuxLinux7.1.6 <= 7.1.*unaffected
LinuxLinux7.2-rc4 <= *unaffected

Weaknesses

References