CVE-2024-53086

MEDIUM

Linux Kernel 6.10-6.11.8 - Denial of Service via Improper Locking in drm/xe Exec IOCTL

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/xe: Drop VM dma-resv lock on xe_sync_in_fence_get failure in exec IOCTL Upon failure all locks need to be dropped before returning to the user. (cherry picked from commit 7d1a4258e602ffdce529f56686925034c1b3b095)

Scores

CVSS v3 5.5
EPSS 0.0015
EPSS Percentile 4.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-667
Status published
Products (9)
linux/Kernel 6.10.0 - 6.11.8linux
Linux/Linux < 6.10
Linux/Linux 58480c1c912ff8146d067301a0d04cca318b4a66 - 64a2b6ed4bfd890a0e91955dd8ef8422a3944ed9
Linux/Linux 58480c1c912ff8146d067301a0d04cca318b4a66 - 96397b1e25dda8389dea63ec914038a170bf953d
Linux/Linux 6.10
Linux/Linux 6.11.8 - 6.11.*
Linux/Linux 6.12
linux/linux_kernel 6.12 rc1 (6 CPE variants)
linux/linux_kernel 6.10 - 6.11.8
Published Nov 19, 2024
Tracked Since Feb 18, 2026