CVE-2026-80883

Summary

In the Linux kernel, the following vulnerability has been resolved:

drm/tegra: gr2d/gr3d: Initialize address register map before HOST1X client is registered

The host1x_client_register() function is called just prior to register map initialization loop, making the device available to userspace. This may result in userspace attempting to submits a job before the register map is initialized. Address this by moving register initialization before host1x client registration.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 6e22d5ad61cfa38aa53fab86a530113aff6a3619affected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 5db37fd7710e74bc4df48bddab8f571d0bfc6769affected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 40a2a91da02c434938f0ba53877984820800b5f0affected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 3055292b8eed69553b389a609197a241df47e68eaffected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < c4ef5ba1131346159e31f4ef858525cf377380a6affected
LinuxLinux0 < 6.6.145affected
LinuxLinux0 < 6.12.97affected
LinuxLinux0 < 6.18.40affected
LinuxLinux0 < 7.1.5affected
LinuxLinux6.6.145 <= 6.6.*unaffected
LinuxLinux6.12.97 <= 6.12.*unaffected
LinuxLinux6.18.40 <= 6.18.*unaffected
LinuxLinux7.1.5 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References