Linux Kernel Mediatek DRM Private Pointer Use-After-Free Vulnerability

Vulnerability

A use-after-free vulnerability has been identified in the Linux kernel's handling of Mediatek Direct Rendering Manager (DRM) bindings. The issue arises because the pointer to the private DRM data is not set to NULL when an error occurs during the binding process. This oversight leads to a memory access violation, as the shutdown procedure attempts to read from a memory location that has already been freed, causing a kernel memory corruption issue.

Impact

Exploitation of this vulnerability leads to a use-after-free condition, allowing for potential arbitrary memory access and manipulation, which could be exploited to execute arbitrary code or cause a denial-of-service condition by crashing the system.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.0
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.