CVE-2026-74699

Summary

In the Linux kernel, the following vulnerability has been resolved:

drm/xe: Fix memory leak in exec_queue_set_hang_replay_state()

The q->replay_state is blindly overwritten, which can potentially leak memory that was previously allocated by vmemdup_user(). Return an error if q->replay_state is not empty.

Discovered using AI-assisted static analysis confirmed by Intel Product Security.

(cherry picked from commit f6b6cc1118bdbc4265fa8b3bdf8565b26f13e56e)

Affected Software

VendorProductVersion RangeStatus
LinuxLinux1026c1a73a9686ff35ac100039f94f0725622447 < 410596743958fbddeb845ff3efe2645397d7c7e2affected
LinuxLinux1026c1a73a9686ff35ac100039f94f0725622447 < c5f500161709f27719701334190dff2325868ef0affected
LinuxLinux7.0affected
LinuxLinux0 < 7.0unaffected
LinuxLinux7.1.9 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References