CVE-2024-35810

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/05/2024
Last modified:
26/09/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> drm/vmwgfx: Fix the lifetime of the bo cursor memory<br /> <br /> The cleanup can be dispatched while the atomic update is still active,<br /> which means that the memory acquired in the atomic update needs to<br /> not be invalidated by the cleanup. The buffer objects in vmw_plane_state<br /> instead of using the builtin map_and_cache were trying to handle<br /> the lifetime of the mapped memory themselves, leading to crashes.<br /> <br /> Use the map_and_cache instead of trying to manage the lifetime of the<br /> buffer objects held by the vmw_plane_state.<br /> <br /> Fixes kernel oops&amp;#39;es in IGT&amp;#39;s kms_cursor_legacy forked-bo.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2 (including) 6.6.24 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.7 (including) 6.7.12 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.8 (including) 6.8.3 (excluding)