CVE-2022-50393

MEDIUM

Linux Kernel - Use-After-Free in DMA Resv Iterator

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: SDMA update use unlocked iterator SDMA update page table may be called from unlocked context, this generate below warning. Use unlocked iterator to handle this case. WARNING: CPU: 0 PID: 1475 at drivers/dma-buf/dma-resv.c:483 dma_resv_iter_next Call Trace: dma_resv_iter_first+0x43/0xa0 amdgpu_vm_sdma_update+0x69/0x2d0 [amdgpu] amdgpu_vm_ptes_update+0x29c/0x870 [amdgpu] amdgpu_vm_update_range+0x2f6/0x6c0 [amdgpu] svm_range_unmap_from_gpus+0x115/0x300 [amdgpu] svm_range_cpu_invalidate_pagetables+0x510/0x5e0 [amdgpu] __mmu_notifier_invalidate_range_start+0x1d3/0x230 unmap_vmas+0x140/0x150 unmap_region+0xa8/0x110

Scores

CVSS v3 5.5
EPSS 0.0014
EPSS Percentile 4.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (11)
linux/Kernel 4.2.0 - 5.19.17linux
linux/Kernel 5.20.0 - 6.0.3linux
Linux/Linux < 4.2
Linux/Linux 4.2
Linux/Linux 5.19.17 - 5.19.*
Linux/Linux 6.0.3 - 6.0.*
Linux/Linux 6.1
Linux/Linux d38ceaf99ed015f2a0b9af3499791bd3a3daae21 - 3913f0179ba366f7d7d160c506ce00de1602bbc4
Linux/Linux d38ceaf99ed015f2a0b9af3499791bd3a3daae21 - 4ff3d517cebe8a29b9f3c302b5292bb1ce291e00
Linux/Linux d38ceaf99ed015f2a0b9af3499791bd3a3daae21 - b892c57a3a04c8de247ab9ee08a0a8cf53290e19
... and 1 more
Published Sep 18, 2025
Tracked Since Feb 18, 2026