Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
- >= 6.19, < 6.19.0-rc1
A vulnerability in the Linux kernel's IVPU driver can lead to data corruption and incorrect device access by allowing the re-export of imported GEM buffers. This issue has been addressed by implementing a custom callback that prevents such re-exporting, thereby preserving buffer flag settings.
The vulnerability could cause data corruption and incorrect access to devices by mishandling buffer flags, according to the Linux kernel commit that introduced the fix.
Users can upgrade to the latest version of the Linux kernel where this vulnerability has been fixed. The specific commit addressing this issue is available in the Linux kernel stable tree.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.