drm/amdgpu: fix AMDGPU_INFO_READ_MMR_REG
Published Jun 26, 2026
5.5
MEDIUMCVSS 3.1
EPSS 0.13%
Description
There were multiple issues in that code.
First of all the order between the reset semaphore and the mm_lock was wrong (e.g. copy_to_user) was called while holding the lock.
Then we allocated memory while holding the reset semaphore which is also a pretty big bug and can deadlock.
Then we used down_read_trylock() instead of waiting for the reset to finish.
(cherry picked from commit 361b6e6b303d4b691f6c5974d3eaab67ca6dd90e)
Affected products
-
- Version StatusaffectedConstraints-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 6.10.14StatusaffectedConstraints<6.11
- Version 6.11.3StatusaffectedConstraints<6.12
- Version 6.6.55StatusaffectedConstraints<6.6.141
- Version
-
- Version 6.12StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<6.12
- Version 6.12.91StatusunaffectedConstraints<=6.12.*
- Version 6.18.33StatusunaffectedConstraints<=6.18.*
- Version 6.6.141StatusunaffectedConstraints<=6.6.*
- Version 7.0.10StatusunaffectedConstraints<=7.0.*
- Version 7.1StatusunaffectedConstraints<=*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| ||||||||||||||||||||||||
| Linux | Linux | unaffected |
| ||||||||||||||||||||||||
| Linux | Linux | affected |
|
- ≥ 6.6.55 · < 6.6.141
- ≥ 6.10.14 · < 6.11
- ≥ 6.11.3 · < 6.12.91
- ≥ 6.13 · < 6.18.33
- ≥ 6.19 · < 7.0.10
- 7.1
No data.
Red Hat Enterprise Linux 10
kernel
Fix deferred
Red Hat Enterprise Linux 6
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Fix deferred
Red Hat Enterprise Linux 9
kernel-rt
Fix deferred
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | kernel | Fix deferred | n/a |
| Red Hat Enterprise Linux 6 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Fix deferred | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (10)
- https://access.redhat.com/security/cve/CVE-2026-53293 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2493700 Issue Tracking
- https://git.kernel.org/stable/c/0ef196a208385b7d7da79f411c161b04e97283e2 Patch
- https://git.kernel.org/stable/c/5c29d20470d4566d1b68df57097d642d01f8b427 Patch
- https://git.kernel.org/stable/c/61957c2e467b39b528a290016367d32a433fa846 Patch
- https://git.kernel.org/stable/c/8c4254c8f5836e77ae83e7fc037f02b69f7a0977 Patch
- https://git.kernel.org/stable/c/a31c3feb54b15a90232e497ad0e27e8a82052d8d Patch
- https://lore.kernel.org/linux-cve-announce/2026062617-CVE-2026-53293-e4ad@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2026-53293
- https://www.cve.org/CVERecord?id=CVE-2026-53293
Change history (0)
No recorded changes yet.