Home

Description

In the Linux kernel, the following vulnerability has been resolved: gpu: host1x: Fix race in syncpt alloc/free Fix race condition between host1x_syncpt_alloc() and host1x_syncpt_put() by using kref_put_mutex() instead of kref_put() + manual mutex locking. This ensures no thread can acquire the syncpt_mutex after the refcount drops to zero but before syncpt_release acquires it. This prevents races where syncpoints could be allocated while still being cleaned up from a previous release. Remove explicit mutex locking in syncpt_release as kref_put_mutex() handles this atomically.

PUBLISHED Reserved 2025-12-24 | Published 2025-12-24 | Updated 2026-02-09 | Assigner Linux

Product status

Default status
unaffected

f5ba33fb9690566c382624637125827b5512e766 (git) before ca9388fba50dac2eb71c13702b7022a801bef90e
affected

f5ba33fb9690566c382624637125827b5512e766 (git) before 4aeaece518fa4436af93d1d8b786200d9656ff4b
affected

f5ba33fb9690566c382624637125827b5512e766 (git) before 6245cce711e2cdb2cc75c0bb8632952e36f8c972
affected

f5ba33fb9690566c382624637125827b5512e766 (git) before 4e6e07ce0197aecfb6c4a62862acc93b3efedeb7
affected

f5ba33fb9690566c382624637125827b5512e766 (git) before d138f73ffb0c57ded473c577719e6e551b7b1f27
affected

f5ba33fb9690566c382624637125827b5512e766 (git) before 79197c6007f2afbfd7bcf5b9b80ccabf8483d774
affected

f5ba33fb9690566c382624637125827b5512e766 (git) before c7d393267c497502fa737607f435f05dfe6e3d9b
affected

Default status
affected

5.13
affected

Any version before 5.13
unaffected

5.15.198 (semver)
unaffected

6.1.160 (semver)
unaffected

6.6.120 (semver)
unaffected

6.12.63 (semver)
unaffected

6.17.13 (semver)
unaffected

6.18.2 (semver)
unaffected

6.19 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/ca9388fba50dac2eb71c13702b7022a801bef90e

git.kernel.org/...c/4aeaece518fa4436af93d1d8b786200d9656ff4b

git.kernel.org/...c/6245cce711e2cdb2cc75c0bb8632952e36f8c972

git.kernel.org/...c/4e6e07ce0197aecfb6c4a62862acc93b3efedeb7

git.kernel.org/...c/d138f73ffb0c57ded473c577719e6e551b7b1f27

git.kernel.org/...c/79197c6007f2afbfd7bcf5b9b80ccabf8483d774

git.kernel.org/...c/c7d393267c497502fa737607f435f05dfe6e3d9b

cve.org (CVE-2025-68732)

nvd.nist.gov (CVE-2025-68732)

Download JSON