CVE-2026-74393

Summary

In the Linux kernel, the following vulnerability has been resolved:

drm/syncobj: Fix memory leak in drm_syncobj_find_fence()

Commit 18226ba52159 ("drm/syncobj: reject invalid flags in drm_syncobj_find_fence") forgot to take into account the fact that drm_syncobj_find() takes a reference to syncobj and returns early without dropping the reference, leading to memory leaks.

Reported by: Sam Spencer <sam.spencer@arm.com>

Affected Software

VendorProductVersion RangeStatus
LinuxLinux18226ba52159257d4c2f777a168cc09adb3c1ac0 < e245f3491bf30a758786a4424854f61fee472308affected
LinuxLinux18226ba52159257d4c2f777a168cc09adb3c1ac0 < 7471006cd854d159723344be809e8287a2d75502affected
LinuxLinux18226ba52159257d4c2f777a168cc09adb3c1ac0 < 5c5994a1204743fa55e4c198ed93a6c36f21cd1faffected
LinuxLinux18226ba52159257d4c2f777a168cc09adb3c1ac0 < e5b93bd6fdb92aa5e4689715d7e8487d9ce66a38affected
LinuxLinux6.9affected
LinuxLinux0 < 6.9unaffected
LinuxLinux6.12.97 <= 6.12.*unaffected
LinuxLinux6.18.40 <= 6.18.*unaffected
LinuxLinux7.1.5 <= 7.1.*unaffected
LinuxLinux7.2-rc1 <= *unaffected

Weaknesses

References