CVE-2023-52921: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix possible UAF in amdgpu_cs_pass1() Since the gang_size check is outside of chunk parsing loop, we need to reset i before we free the chunk data. Suggested by Ye Zhang (@VAR10CK) of Baidu Security.
Affected products
- Linux Linux Kernel: before 6.1.46 (fixed in 6.1.46); from 6.2, before 6.4.11 (fixed in 6.4.11); version 6.5 only
Published 2024-11-19. Last modified 2026-06-17.