In the Linux kernel, the following vulnerability has been resolved:
drm/shmem-helper: Remove errant put in error path
drmgemshmem_mmap() doesn't own this reference, resulting in the GEM object getting prematurely freed leading to a later use-after-free.