PT-2024-5913 · Linux+3 · Linux Kernel+3
Matthew Brost
·
Published
2024-08-21
·
Updated
2025-09-29
·
CVE-2024-44978
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The issue is related to the use of memory after it has been freed, specifically in the
drm/xe component of the Linux kernel. This can lead to a denial of service. The problem arises because the xe exec queue put function can destroy the VM while the job is still being freed, which depends on the job's vm being valid. To prevent this, the job is freed before xe exec queue put is called.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Use After Free
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Linuxmint
Linux Kernel
Ubuntu