๐Ÿ” CVE Alert

CVE-2026-89816

UNKNOWN 0.0

drm: Fix drm_crtc_commit leak if signaled when PAGE_FLIP_EVENT is used

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: drm: Fix drm_crtc_commit leak if signaled when PAGE_FLIP_EVENT is used Commit 1c6ceeee6ebb ("drm/atomic: Fix memleak on ERESTARTSYS during non-blocking commits") fixed a very similar issue when the event was allocated by drm_atomic_helper_setup_commit() itself. However, if the event is allocated in prepare_signaling(), it will also be set to NULL in complete_signaling(), which prevents drm_crtc_commit from being put in __drm_atomic_helper_crtc_destroy_state(). Dropping the reference when the event is set to NULL at complete_signaling() fixes the leak. The leak can be reproduced by sending a signal to the thread using DRM_MODE_PAGE_FLIP_EVENT and using a sw_sync fence to cause the atomic ioctl to block at drm_atomic_helper_wait_for_fences(). It happened both with amdgpu and vkms.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 16, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
24835e442f289813aa568d142a755672a740503c < c5517b71101f61a45144e3cf77a19626355272de 24835e442f289813aa568d142a755672a740503c < 866a04137dac7e82a3848851061ff7ed15c2847e 24835e442f289813aa568d142a755672a740503c < 6a6a7aae4681a20cd32789fea9a487aaafa0e7a3 24835e442f289813aa568d142a755672a740503c < e2f27b5ed9084feb7bae9ef2bc80de37c92280b1 24835e442f289813aa568d142a755672a740503c < ff73f5f43d032c3da3c534c517f661e8dfeb358a 24835e442f289813aa568d142a755672a740503c < 66b1b309886337745d395bbc158440ab196305ce 24835e442f289813aa568d142a755672a740503c < e6195b941fdc8d81fc431c9f25539cf6c6234b51 24835e442f289813aa568d142a755672a740503c < 4d4be202165e832d74849b4a68e289a2a377039c c75fe7899538890109aad7bbf92b2f304389e825 2a3241044b1c4ecc13f73b7158881881fb7534a1 4.9.19 < 4.10 4.10.7 < 4.11
Linux / Linux
4.11

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/c5517b71101f61a45144e3cf77a19626355272de git.kernel.org: https://git.kernel.org/stable/c/866a04137dac7e82a3848851061ff7ed15c2847e git.kernel.org: https://git.kernel.org/stable/c/6a6a7aae4681a20cd32789fea9a487aaafa0e7a3 git.kernel.org: https://git.kernel.org/stable/c/e2f27b5ed9084feb7bae9ef2bc80de37c92280b1 git.kernel.org: https://git.kernel.org/stable/c/ff73f5f43d032c3da3c534c517f661e8dfeb358a git.kernel.org: https://git.kernel.org/stable/c/66b1b309886337745d395bbc158440ab196305ce git.kernel.org: https://git.kernel.org/stable/c/e6195b941fdc8d81fc431c9f25539cf6c6234b51 git.kernel.org: https://git.kernel.org/stable/c/4d4be202165e832d74849b4a68e289a2a377039c