Home

Description

In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix UAF race between device unplug and FW event processing The function panthor_fw_unplug() will free the FW memory sections. The problem is that there could still be pending FW events which are yet not handled at this point. process_fw_events_work() can in this case try to access said freed memory. Simply call disable_work_sync() to both drain and prevent future invocation of process_fw_events_work().

PUBLISHED Reserved 2025-12-24 | Published 2025-12-24 | Updated 2025-12-24 | Assigner Linux

Product status

Default status
unaffected

de85488138247d034eb3241840424a54d660926b (git) before 31db188355a49337e3e8ec98b99377e482eab22c
affected

de85488138247d034eb3241840424a54d660926b (git) before 5e3ff56d4cb591daea70786d07dc21d06dc34108
affected

de85488138247d034eb3241840424a54d660926b (git) before 6c1da9ae2c123a9ffda5375e64cc81f9ed3cc04a
affected

de85488138247d034eb3241840424a54d660926b (git) before 7051f6ba968fa69918d72cc26de4d6cf7ea05b90
affected

Default status
affected

6.10
affected

Any version before 6.10
unaffected

6.12.63 (semver)
unaffected

6.17.13 (semver)
unaffected

6.18.2 (semver)
unaffected

6.19-rc1 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/31db188355a49337e3e8ec98b99377e482eab22c

git.kernel.org/...c/5e3ff56d4cb591daea70786d07dc21d06dc34108

git.kernel.org/...c/6c1da9ae2c123a9ffda5375e64cc81f9ed3cc04a

git.kernel.org/...c/7051f6ba968fa69918d72cc26de4d6cf7ea05b90

cve.org (CVE-2025-68748)

nvd.nist.gov (CVE-2025-68748)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.