CVE-2026-43498

ANALYSIS PENDING

accel/ivpu: Disallow re-exporting imported GEM objects

Title source: cna
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Disallow re-exporting imported GEM objects Prevent re-exporting of imported GEM buffers by adding a custom prime_handle_to_fd callback that checks if the object is imported and returns -EOPNOTSUPP if so. Re-exporting imported GEM buffers causes loss of buffer flags settings, leading to incorrect device access and data corruption.

Scores

EPSS 0.0002
EPSS Percentile 5.2%

Details

Status published
Products (6)
Linux/Linux < 6.19
Linux/Linux 57557964b582238d5ee4b8538d1c4694f91c2186 - 3756043dd695bba34cc728cdc5688dcb49ac8043
Linux/Linux 57557964b582238d5ee4b8538d1c4694f91c2186 - 7dd57d7a6350770dfc283287125c409e995200e0
Linux/Linux 6.19
Linux/Linux 7.0.7 - 7.0.*
Linux/Linux 7.1-rc3
Published May 21, 2026
Tracked Since May 21, 2026