CVE-2025-38722

habanalabs: fix UAF in export_dmabuf()

References

Notes

 carnil> Introduced in db1a8dd916aa ("habanalabs: add support for dma-buf exporter").
 carnil> Vulnerable versions: 5.16.

Bugs

Status

Branch Status
upstream released (6.17-rc2) [33927f3d0ecdcff06326d6e4edb6166aed42811c]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.16-upstream-stable released (6.16.2) [55c232d7e0241f1d5120b595e7a9de24c75ed3d8]
6.15-upstream-stable released (6.15.11) [40deceb38f9db759772d1c289c28fd2a543f57fc]
6.12-upstream-stable released (6.12.43) [c07886761fd6251db6938d4e747002e3d150d231]
6.6-upstream-stable needed
6.1-upstream-stable needed
5.10-upstream-stable N/A "Vulnerable code not present"
sid released (6.16.3-1)
6.12-trixie-security released (6.12.43-1)
6.1-bookworm-security needed
5.10-bullseye-security N/A "Vulnerable code not present"