CVE Database
/

CVE-2026-43370

Back to search

CVE-2026-43370

Published: May 8, 2026

Modified: May 11, 2026

PUBLISHED

CVSS v3.1

7.8

HIGH

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix use-after-free race in VM acquire Replace non-atomic vm->process_info assignment with cmpxchg() to prevent race when parent/child processes sharing a drm_file both try to acquire the same VM after fork(). (cherry picked from commit c7c573275ec20db05be769288a3e3bb2250ec618)

VendorProductVersions

Linux

Linux

affected
ede0dd86f45adf2b7083bb161f6bc81da5fe2bad - < ae87aea330c24f462fc7058ed543ba8bc6798447
affected
ede0dd86f45adf2b7083bb161f6bc81da5fe2bad - < 46d309996bd9251792d7dafdbaf615cf202b4447
affected
ede0dd86f45adf2b7083bb161f6bc81da5fe2bad - < e61e355cbe49e585097eee28c15b862bfb1c0668
affected
ede0dd86f45adf2b7083bb161f6bc81da5fe2bad - < c658c1c85ec235b7ecfbf8dbfee385b1332088f4
affected
ede0dd86f45adf2b7083bb161f6bc81da5fe2bad - < 904025fa8bba1d028adade33346372b4ac1a9249

+3 more versions

Linux

Linux

affected
4.17
unaffected
0 - < 4.17
unaffected
5.10.253 - <= 5.10.*
unaffected
5.15.203 - <= 5.15.*
unaffected
6.1.167 - <= 6.1.*

+5 more versions

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Local

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now