Description
In the Linux kernel, the following vulnerability has been resolved: drm/xe/hdcp: Add NULL check for media_gt in intel_hdcp_gsc_check_status() When media GT is disabled via configfs, there is no allocation for media_gt, which is kept as NULL. In such scenario, intel_hdcp_gsc_check_status() results in a kernel pagefault error due to >->uc.gsc being evaluated as an invalid memory address. Fix that by introducing a NULL check on media_gt and bailing out early if so. While at it, also drop the NULL check for gsc, since it can't be NULL if media_gt is not NULL. v2: - Get address for gsc only after checking that gt is not NULL. (Shuicheng) - Drop the NULL check for gsc. (Shuicheng) v3: - Add "Fixes" and "Cc: <stable...>" tags. (Matt) (cherry picked from commit bfaf87e84ca3ca3f6e275f9ae56da47a8b55ffd1)
Product status
4af50beb4e0f9e6aed9cd53436c099f1dba826f1 (git) before cad210d2851f3a7d9573bdfc02aa61d9287bbe8c
4af50beb4e0f9e6aed9cd53436c099f1dba826f1 (git) before 814326e86e929b865020ff44f4576dbdfe3f7ff3
4af50beb4e0f9e6aed9cd53436c099f1dba826f1 (git) before d8ab4b47edf4578dbfbe5e95817107a514fa34cc
4af50beb4e0f9e6aed9cd53436c099f1dba826f1 (git) before 60a1e131a811b68703da58fd805ab359b704ab03
6.10
Any version before 6.10
6.12.92 (semver)
6.18.34 (semver)
7.0.9 (semver)
7.1-rc3 (original_commit_for_fix)
References
git.kernel.org/...c/cad210d2851f3a7d9573bdfc02aa61d9287bbe8c
git.kernel.org/...c/814326e86e929b865020ff44f4576dbdfe3f7ff3
git.kernel.org/...c/d8ab4b47edf4578dbfbe5e95817107a514fa34cc
git.kernel.org/...c/60a1e131a811b68703da58fd805ab359b704ab03