CVE-2023-51042Use After Free in Kernel

CWE-416Use After Free8 documents8 sources
Severity
7.8HIGHNVD
EPSS
0.0%
top 91.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 23
Latest updateFeb 16

Description

In the Linux kernel before 6.4.12, amdgpu_cs_wait_all_fences in drivers/gpu/drm/amd/amdgpu/amdgpu_cs.c has a fence use-after-free.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages6 packages

Patches

🔴Vulnerability Details

2
OSV
CVE-2023-51042: In the Linux kernel before 62024-01-23
GHSA
GHSA-5v7q-gqff-9cj8: In the Linux kernel before 62024-01-23

📋Vendor Advisories

4
Chrome
Long Term Support Channel Update for ChromeOS: CVE-2023-510422024-02-16
Red Hat
kernel: use-after-free in amdgpu_cs_wait_all_fences in drivers/gpu/drm/amd/amdgpu/amdgpu_cs.c2024-01-23
Microsoft
In the Linux kernel before 6.4.12 amdgpu_cs_wait_all_fences in drivers/gpu/drm/amd/amdgpu/amdgpu_cs.c has a fence use-after-free.2024-01-09
Debian
CVE-2023-51042: linux - In the Linux kernel before 6.4.12, amdgpu_cs_wait_all_fences in drivers/gpu/drm/...2023

💬Community

1
Bugzilla
CVE-2023-51042 kernel: use-after-free in amdgpu_cs_wait_all_fences in drivers/gpu/drm/amd/amdgpu/amdgpu_cs.c2024-01-23
CVE-2023-51042 — Use After Free in Linux Kernel | cvebase