SB2024110848 - Improper locking in Linux kernel drm panthor driver
Published: November 8, 2024 Updated: May 12, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Improper locking (CVE-ID: CVE-2024-50174)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper locking within the panthor_group_destroy(), panthor_group_get_state() and panthor_job_create() functions in drivers/gpu/drm/panthor/panthor_sched.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/8a585d553c11965332d7a2d74e79ef92a42bfc87
- https://git.kernel.org/stable/c/44742138d151c3a945460ae7beff8ae45ac0bf58
- https://git.kernel.org/stable/c/cac075706f298948898b1f63e81709df42afa75d
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.10.14
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.11.3
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.12