oM noM Security Feeds cve
vulnerability context

CVE-2026-46215

CVSS 7.8 HIGHEPSS 3.2%CWE-416OTX 10 pulses

In the Linux kernel, the following vulnerability has been resolved: drm: Set old handle to NULL before prime swap in change_handle There was a potential race condition in change_handle. The ioctl briefly had a single object with two idr entries; a concurrent gem_close could delete the object and remove one of the handles while leaving the other one dangling, which could subsequently be dereferenced for a use-after-free. To fix this, do the same dance that gem_close itself does. (f6cd7daecff5 drm: Release driver references to handle before making it available again) First idr_replace the old...

Published 2026-05-28 · last modified 2026-06-17

details

CISA KEV status
Not in catalog
CVSS v3
7.8 / HIGH
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
3.2% percentile (score 0.0013)
CWE
CWE-416
OTX pulses
10 total, 0 recent

source mentions 2

source consensus

  • Bluesky
Want the 3-bullet summary of CVE-2026-46215, plus webhook alerts when KEV is updated? Pro is $10/mo.