Out of Bounds Access Vulnerability in Linux Kernel Affecting AMD Graphics Firmware
CVE-2026-64516
Currently unrated
What is CVE-2026-64516?
A vulnerability in the Linux kernel related to the AMD VCE 1 firmware could lead to out of bounds access issues. The primary concern is that the Virtual Control Program Buffer Object (VCPU BO) size did not account for the firmware offset, which can lead to accessing memory outside of the reserved buffer. This flaw requires the firmware microcode to properly fit within the designated space while ensuring stack and data offsets align with the 32K Translation Lookaside Buffer (TLB) size, thus preventing potential security breaches.
Affected Version(s)
Linux d4a640d4b9f34aa9472c71986ef4b5a42dbe4f0f
Linux d4a640d4b9f34aa9472c71986ef4b5a42dbe4f0f < 3e5a1d5bb2ff061e64c7992f8e5404dfd4c2d0f3
Linux 6.19