In the Linux kernel, the following vulnerability has been resolved:drm/amd/display: Handle dml allocation failure to avoid crash[Why]In the case where a dml allocation fails for any reason, thecurrent state's dml contexts would no longer be valid. Thensubsequent calls dc_state_copy_internal would shallow copyinvalid memory and if the new state was released, a doublefree would occur.[How]Reset dml pointers in new_state to NULL and avoid invalidpointer(cherry picked from commit bcafdc61529a48f6f06355d78eb41b3aeda5296c)
No PoCs from references.
- https://github.com/bygregonline/devsec-fastapi-report