CVE-2026-43370

HIGH EPSS 2.6%
Published May 8, 20261mo ago · Modified Jun 17, 20261w ago
7.8 CVSS 3.1
High
Find Similar
Published May 8, 2026 1mo ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix use-after-free race in VM acquire Replace non-atomic vm->process_info assignment with cmpxchg() to prevent race when parent/child processes sharing a drm_file both try to acquire the same VM after fork(). (cherry picked from commit c7c573275ec20db05be769288a3e3bb2250ec618)

CVSS Details

Base Score
7.8
Exploitability
1.8
Impact
5.9
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity High
Availability High

Threat Intelligence

EPSS Exploit Probability
2.6% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-416 Use After Free Memory Safety

Affected Products 9

VendorProductVersionRange
linuxlinux_kernel*≥4.17  –  <5.10.253
linuxlinux_kernel*≥5.11  –  <5.15.203
linuxlinux_kernel*≥5.16  –  <6.1.167
linuxlinux_kernel*≥6.2  –  <6.6.130
linuxlinux_kernel*≥6.7  –  <6.12.78
linuxlinux_kernel*≥6.13  –  <6.18.19
linuxlinux_kernel*≥6.19  –  <6.19.9
linuxlinux_kernel7.0any
linuxlinux_kernel7.0any

References 8

  • git.kernel.org https://git.kernel.org/stable/c/2c1030f2e84885cc58bffef6af67d5b9d2e7098f
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/46d309996bd9251792d7dafdbaf615cf202b4447
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7885eb335d8f9e9942925d57e300a85e3f82ded4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/904025fa8bba1d028adade33346372b4ac1a9249
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/94b7782d0c8024f5b88454241c8d4777076c3786
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ae87aea330c24f462fc7058ed543ba8bc6798447
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c658c1c85ec235b7ecfbf8dbfee385b1332088f4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e61e355cbe49e585097eee28c15b862bfb1c0668
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/2c1030f2e84885cc58bffef6af67d5b9d2e7098f
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/46d309996bd9251792d7dafdbaf615cf202b4447
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7885eb335d8f9e9942925d57e300a85e3f82ded4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/904025fa8bba1d028adade33346372b4ac1a9249
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/94b7782d0c8024f5b88454241c8d4777076c3786
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ae87aea330c24f462fc7058ed543ba8bc6798447
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c658c1c85ec235b7ecfbf8dbfee385b1332088f4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e61e355cbe49e585097eee28c15b862bfb1c0668
    Patch