drm/msm/disp/dpu1: set vbif hw config to NULL to avoid use after memory free during pm runtime resume
Published Feb 26, 2025
7.8
HIGHCVSS 3.1
EPSS 0.28%
Description
BUG: Unable to handle kernel paging request at virtual address 006b6b6b6b6b6be3
Call trace: dpu_vbif_init_memtypes+0x40/0xb8 dpu_runtime_resume+0xcc/0x1c0 pm_generic_runtime_resume+0x30/0x44 __genpd_runtime_resume+0x68/0x7c genpd_runtime_resume+0x134/0x258 __rpm_callback+0x98/0x138 rpm_callback+0x30/0x88 rpm_resume+0x36c/0x49c __pm_runtime_resume+0x80/0xb0 dpu_core_irq_uninstall+0x30/0xb0 dpu_irq_uninstall+0x18/0x24 msm_drm_uninit+0xd8/0x16c
Patchwork: https://patchwork.freedesktop.org/patch/483255/ [DB: fixed Fixes tag]
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 4.19StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<4.19
- Version 4.19.247StatusunaffectedConstraints<=4.19.*
- Version 5.10.121StatusunaffectedConstraints<=5.10.*
- Version 5.15.46StatusunaffectedConstraints<=5.15.*
- Version 5.17.14StatusunaffectedConstraints<=5.17.*
- Version 5.18.3StatusunaffectedConstraints<=5.18.*
- Version 5.19StatusunaffectedConstraints<=*
- Version 5.4.198StatusunaffectedConstraints<=5.4.*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| ||||||||||||||||||||||||||||||
| Linux | Linux | affected |
|
- ≥ 4.19 · < 4.19.247
- ≥ 4.20 · < 5.4.198
- ≥ 5.5 · < 5.10.121
- ≥ 5.11 · < 5.15.46
- ≥ 5.16 · < 5.17.14
- ≥ 5.18 · < 5.18.3
No data.
Red Hat Enterprise Linux 10
kernel
Not affected
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (13)
- https://access.redhat.com/security/cve/CVE-2022-49489 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2347869 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-54740 Advisory
- https://git.kernel.org/stable/c/134760263f6441741db0b2970e7face6b34b6d1c Patch
- https://git.kernel.org/stable/c/5b0adf5cbf3b74721e4e4c4e0cadc91b8df8bcc2 Patch
- https://git.kernel.org/stable/c/97ac682b6f7d36be5d934f86c9911066540a68f1 Patch
- https://git.kernel.org/stable/c/aa4cb188988dc6f1b3f4917d4dbc452150a5d871 Patch
- https://git.kernel.org/stable/c/ef10d0c68e8608848cd58fca2589685718426607 Patch
- https://git.kernel.org/stable/c/ef4bdaac7cb5416f236613ed9337ff0ea8ee329b Patch
- https://git.kernel.org/stable/c/fa5186b279ecf44b14fb435540d2065be91cb1ed Patch
- https://lore.kernel.org/linux-cve-announce/2025022605-CVE-2022-49489-4131@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2022-49489
- https://www.cve.org/CVERecord?id=CVE-2022-49489
Change history (0)
No recorded changes yet.