First published: Sun Feb 25 2024(Updated: )
In the Linux kernel, the following vulnerability has been resolved: drivers/amd/pm: fix a use-after-free in kv_parse_power_table When ps allocated by kzalloc equals to NULL, kv_parse_power_table frees adev->pm.dpm.ps that allocated before. However, after the control flow goes through the following call chains: kv_parse_power_table |-> kv_dpm_init |-> kv_dpm_sw_init |-> kv_dpm_fini The adev->pm.dpm.ps is used in the for loop of kv_dpm_fini after its first free in kv_parse_power_table and causes a use-after-free bug. <a href="https://git.kernel.org/stable/c/28dd788382c43b330480f57cd34cde0840896743">https://git.kernel.org/stable/c/28dd788382c43b330480f57cd34cde0840896743</a> <a href="https://git.kernel.org/stable/c/3426f059eacc33ecc676b0d66539297e1cfafd02">https://git.kernel.org/stable/c/3426f059eacc33ecc676b0d66539297e1cfafd02</a> <a href="https://git.kernel.org/stable/c/35fa2394d26e919f63600ce631e6aefc95ec2706">https://git.kernel.org/stable/c/35fa2394d26e919f63600ce631e6aefc95ec2706</a> <a href="https://git.kernel.org/stable/c/520e213a0b97b64735a13950e9371e0a5d7a5dc3">https://git.kernel.org/stable/c/520e213a0b97b64735a13950e9371e0a5d7a5dc3</a> <a href="https://git.kernel.org/stable/c/8a27d9d9fc9b5564b8904c3a77a7dea482bfa34e">https://git.kernel.org/stable/c/8a27d9d9fc9b5564b8904c3a77a7dea482bfa34e</a> <a href="https://git.kernel.org/stable/c/8b55b06e737feb2a645b0293ea27e38418876d63">https://git.kernel.org/stable/c/8b55b06e737feb2a645b0293ea27e38418876d63</a> <a href="https://git.kernel.org/stable/c/95084632a65d5c0d682a83b55935560bdcd2a1e3">https://git.kernel.org/stable/c/95084632a65d5c0d682a83b55935560bdcd2a1e3</a> <a href="https://git.kernel.org/stable/c/b6dcba02ee178282e0d28684d241e0b8462dea6a">https://git.kernel.org/stable/c/b6dcba02ee178282e0d28684d241e0b8462dea6a</a>
Credit: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Linux kernel | >=4.2.0<4.19.306 | |
Linux Linux kernel | >=4.20.0<5.4.268 | |
Linux Linux kernel | >=5.5.0<5.10.209 | |
Linux Linux kernel | >=5.11.0<5.15.148 | |
Linux Linux kernel | >=5.16.0<6.1.75 | |
Linux Linux kernel | >=6.2.0<6.6.14 | |
Linux Linux kernel | >=6.7.0<6.7.2 | |
debian/linux | 5.10.223-1 5.10.226-1 6.1.115-1 6.1.112-1 6.11.5-1 6.11.7-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.