Security Advisory

CVE-2025-40191

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-11-12 21:56:31
Last updated 2026-05-11 21:44:31
Assigner Linux
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix kfd process ref leaking when userptr unmapping kfd_lookup_process_by_pid hold the kfd process reference to ensure it doesnt get destroyed while sending the segfault event to user space. Calling kfd_lookup_process_by_pid as function parameter leaks the kfd process refcount and miss the NULL pointer check if app process is already destroyed.