drm/msm: Recover HW before retire hung submit
Summary
| CVE | CVE-2026-100077 |
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-09-25 14:17:14 UTC |
| Updated | 2026-09-25 14:17:14 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved:
drm/msm: Recover HW before retire hung submit
During recovery, it is not safe to retire the hung submit before we
recover the GPU. Retiring the submit triggers BO free and that can
result in GPU pagefaults since the GPU may be actively accessing those
BOs.
To fix this, retire the submits after gpu recovery is complete in
recover_worker().
Patchwork: https://patchwork.freedesktop.org/patch/730655/ |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|
| CNA |
Linux |
Linux |
affected 1a370be9ac51129e40b0ed7fa71d2b2b92bc47e5 e36284257eeca13768687bf8e52f66f8ea0e8794 git |
Not specified |
| CNA |
Linux |
Linux |
affected 1a370be9ac51129e40b0ed7fa71d2b2b92bc47e5 dc64cf9d71428234389b635d142cb5fe07d57eab git |
Not specified |
| CNA |
Linux |
Linux |
affected 1a370be9ac51129e40b0ed7fa71d2b2b92bc47e5 b303e1d52811de7d1bcf793560754d4df68d4a1c git |
Not specified |
| CNA |
Linux |
Linux |
affected 4.2 |
Not specified |
| CNA |
Linux |
Linux |
unaffected 4.2 semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.18.52 6.18.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.2.6 7.2.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.3-rc1 * original_commit_for_fix |
Not specified |
References
| Reference | Source | Link | Tags |
|---|
| git.kernel.org/stable/c/b303e1d52811de7d1bcf793560754d4df68d4a1c |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/dc64cf9d71428234389b635d142cb5fe07d57eab |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/e36284257eeca13768687bf8e52f66f8ea0e8794 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.