CVE-2026-98179

Summary

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: fix rmmio iounmap skipped on device removal

amdgpu_pci_remove() calls drm_dev_unplug() before fini_sw(), so drm_dev_enter() is already false there and the iounmap() guarded by it is skipped. This .remove path runs on both hot-unplug and plain rmmod, so the register BAR ioremap mapping leaks one instance per unload.

Unmap rmmio unconditionally (guard only on non-NULL) and drop the now unused idx.

(cherry picked from commit dd6f86a97260e5207d3329ad03aa89fdad61b1e6)

Affected Software

VendorProductVersion RangeStatus
LinuxLinux62d5f9f7110ad374db67ab4820f4ff2d916c3cdb < e81502d6791df9ecd003bfb2ca44f0d1f1b38439affected
LinuxLinux62d5f9f7110ad374db67ab4820f4ff2d916c3cdb < cd55dde2b63789a3dafe982c89844f537501d096affected
LinuxLinux62d5f9f7110ad374db67ab4820f4ff2d916c3cdb < a645584c3ccc493ee835f77155829442bd7578c3affected
LinuxLinux62d5f9f7110ad374db67ab4820f4ff2d916c3cdb < 5155002b03b24ba3ef91c5c313b8cf0171b24904affected
LinuxLinux5.17affected
LinuxLinux0 < 5.17unaffected
LinuxLinux6.12.112 <= 6.12.*unaffected
LinuxLinux6.18.54 <= 6.18.*unaffected
LinuxLinux7.2.8 <= 7.2.*unaffected
LinuxLinux7.3-rc4 <= *unaffected

Weaknesses

References