In the Linux kernel, the following vulnerability has been resolved:
drm/msm/dpu: don't mix devm and drmm functions
Mixing devm and drmm functions will result in a use-after-free on msm driver teardown if userspace keeps a reference on the drm device: The WB connector data will be destroyed because of the use of devm_kzalloc()), while the usersoace still can try interacting with the WB connector (which uses drmm_ functions).
Change dpu_writeback_init() to use drmm_.
Patchwork: https://patchwork.freedesktop.org/patch/722656/
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Ubuntu | — | Upgrade linux-image-aws-7.0Upgrade linux-image-7.0.0-1008-oracle-64kUpgrade linux-image-7.0.0-1010-azureUpgrade linux-image-7.0.0-1009-azure-fdeUpgrade linux-image-7.0.0-1015-raspi-realtimeUpgrade linux-image-aws-64k-7.0Upgrade linux-image-7.0.0-1009-aws-64kUpgrade linux-image-oracle-7.0Upgrade linux-image-aws-64kUpgrade linux-image-raspi-realtime-7.0Upgrade linux-image-ibmUpgrade linux-image-oracle-64k-7.0Upgrade linux-image-7.0.0-1009-awsUpgrade linux-image-azure-fde-7.0Upgrade linux-image-ibm-7.0Upgrade linux-image-7.0.0-1010-ibmUpgrade linux-image-oracleUpgrade linux-image-azure-fdeUpgrade linux-image-raspiUpgrade linux-image-oracle-64kUpgrade linux-image-7.0.0-1015-raspiUpgrade linux-image-azureUpgrade linux-image-awsUpgrade linux-image-raspi-realtimeUpgrade linux-image-raspi-7.0Upgrade linux-image-7.0.0-1008-oracleUpgrade linux-image-azure-7.0 | Jul 21, 2026 | Jul 20, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub