Linux vulnerability

In the Linux kernel, the following vulnerability has been resolved: drm/tegra: gr2d/gr3d: Initialize address register map before HOST1X client is registered The host1x_client_register() function is called just prior to register map initialization loop, making the device available to userspace. This may result in userspace attempting to submits a job before the register map is initialized. Address this by moving register initialization before host1x client registration.

Published 4 Sep 2026Updated 7 Sep 20265 sources
CVSS 0.0

What happened

In the Linux kernel, the following vulnerability has been resolved: drm/tegra: gr2d/gr3d: Initialize address register map before HOST1X client is registered The host1x_client_register() function is called just prior to register map initialization loop, making the device available to userspace. This may result in userspace attempting to submits a job before the register map is initialized. Address this by moving register initialization before host1x client registration.

Affected versions

Linux: d43f81cbaf43531a977e8b4c4427f19acf8a5061 through before 6e22d5ad61cfa38aa53fab86a530113aff6a3619 (git); d43f81cbaf43531a977e8b4c4427f19acf8a5061 through before 5db37fd7710e74bc4df48bddab8f571d0bfc6769 (git); d43f81cbaf43531a977e8b4c4427f19acf8a5061 through before 40a2a91da02c434938f0ba53877984820800b5f0 (git); d43f81cbaf43531a977e8b4c4427f19acf8a5061 through before 3055292b8eed69553b389a609197a241df47e68e (git); d43f81cbaf43531a977e8b4c4427f19acf8a5061 through before c4ef5ba1131346159e31f4ef858525cf377380a6 (git); 3.10 Fixed: See vendor advisory.

Why it matters

Review the vendor advisory and exposure of the affected product to determine operational impact.

Detection & mitigation

  • Apply vendor-provided updates or mitigations.
  • Review affected product exposure and access logs.

Public PoC references

No public PoC reference has passed the current publication threshold.