CVE-2026-74699
N/A
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
drm/xe: Fix memory leak in exec_queue_set_hang_replay_state()
The q->replay_state is blindly overwritten, which can potentially leak memory that was previously allocated by vmemdup_user(). Return an error if q->replay_state is not empty.
Discovered using AI-assisted static analysis confirmed by Intel Product Security.
(cherry picked from commit f6b6cc1118bdbc4265fa8b3bdf8565b26f13e56e)
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 1026c1a73a9686ff35ac100039f94f0725622447 < 410596743958fbddeb845ff3efe2645397d7c7e2 | affected |
| Linux | Linux | 1026c1a73a9686ff35ac100039f94f0725622447 < c5f500161709f27719701334190dff2325868ef0 | affected |
| Linux | Linux | 7.0 | affected |
| Linux | Linux | 0 < 7.0 | unaffected |
| Linux | Linux | 7.1.9 <= 7.1.* | unaffected |
| Linux | Linux | 7.2 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/410596743958fbddeb845ff3efe2645397d7c7e2
- https://git.kernel.org/stable/c/c5f500161709f27719701334190dff2325868ef0
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.