« Volver al listado

CVE-2026-74699

Estado: RecibidaSin puntuar—

In the Linux kernel, the following vulnerability has been resolved:

drm/xe: Fix memory leak in exec_queue_set_hang_replay_state()

The q->replay_state is blindly overwritten, which can potentially leak memory that was previously allocated by vmemdup_user(). Return an error if q->replay_state is not empty.

Discovered using AI-assisted static analysis confirmed by Intel Product Security.

(cherry picked from commit f6b6cc1118bdbc4265fa8b3bdf8565b26f13e56e)

CVSS

NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-74699",
  "cveTags": [],
  "metrics": {},
  "affected": [
    {
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
      "affectedData": [
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "1026c1a73a9686ff35ac100039f94f0725622447",
              "lessThan": "410596743958fbddeb845ff3efe2645397d7c7e2",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "1026c1a73a9686ff35ac100039f94f0725622447",
              "lessThan": "c5f500161709f27719701334190dff2325868ef0",
              "versionType": "git"
            }
          ],
          "programFiles": [
            "drivers/gpu/drm/xe/xe_exec_queue.c"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "7.0"
            },
            {
              "status": "unaffected",
              "version": "0",
              "lessThan": "7.0",
              "versionType": "semver"
            },
            {
              "status": "unaffected",
              "version": "7.1.9",
              "versionType": "semver",
              "lessThanOrEqual": "7.1.*"
            },
            {
              "status": "unaffected",
              "version": "7.2",
              "versionType": "original_commit_for_fix",
              "lessThanOrEqual": "*"
            }
          ],
          "programFiles": [
            "drivers/gpu/drm/xe/xe_exec_queue.c"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2026-08-22T16:16:44.503",
  "references": [
    {
      "url": "https://git.kernel.org/stable/c/410596743958fbddeb845ff3efe2645397d7c7e2",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/c5f500161709f27719701334190dff2325868ef0",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    }
  ],
  "vulnStatus": "Received",
  "descriptions": [
    {
      "lang": "en",
      "value": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe: Fix memory leak in exec_queue_set_hang_replay_state()\n\nThe q->replay_state is blindly overwritten, which can potentially leak\nmemory that was previously allocated by vmemdup_user().\nReturn an error if q->replay_state is not empty.\n\nDiscovered using AI-assisted static analysis confirmed by Intel Product\nSecurity.\n\n(cherry picked from commit f6b6cc1118bdbc4265fa8b3bdf8565b26f13e56e)"
    }
  ],
  "lastModified": "2026-08-22T16:16:44.503",
  "sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}