In the Linux kernel, the following vulnerability has been resolved:
drm/msm/dp: Free resources after unregistering them
The DP component's unbind operation walks through the submodules to unregister and clean things up. But if the unbind happens because the DP controller itself is being removed, all the memory for those submodules has just been freed.
Change the order of these operations to avoid the many use-after-free that otherwise happens in this code path.
Patchwork: https://patchwork.freedesktop.org/patch/542166/
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Sep 18, 2025 | Sep 18, 2025 |
| Ubuntu | — | Upgrade linux-nvidiaUpgrade linux-ibm-5.15Upgrade linux-riscv-5.15Upgrade linux-ibmUpgrade linux-oracle-5.15Upgrade linux-intel-iotg-5.15Upgrade linux-azure-5.15Upgrade linux-kvmUpgrade linux-intel-iotgUpgrade linux-nvidia-tegraUpgrade linux-nvidia-tegra-igxUpgrade linux-intel-iot-realtimeUpgrade linux-gkeUpgrade linux-realtimeUpgrade linux-gcp-5.15Upgrade linux-gcpUpgrade linux-xilinx-zynqmpUpgrade linux-oracleUpgrade linux-lowlatency-hwe-5.15Upgrade linux-bluefieldUpgrade linux-raspiUpgrade linux-lowlatencyUpgrade linux-azureUpgrade linux-aws-5.15Upgrade linux-gkeopUpgrade linux-nvidia-tegra-5.15Upgrade linux-hwe-5.15Upgrade linux-awsUpgrade linux | Sep 19, 2025 | Sep 17, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Oct 15, 2025 | Sep 16, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub