Linux Kernel Vulnerability Affecting AMD GPU Command Submission
CVE-2026-80576

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
26 August 2026

What is CVE-2026-80576?

A vulnerability exists in the Linux kernel affecting AMD GPUs where oversized instruction buffers (IBs) can be submitted without appropriate limits. This flaw allows user-supplied buffer lengths to exceed safe thresholds, potentially corrupting adjacent control bits and destabilizing the command submission process. To address this, a new per-ring packet size limit has been implemented, which rejects command submissions that exceed specified limits. This enhancement ensures better stability and security during operations with GFX, compute, SDMA, and VPE ring types.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 6e164ba1057175fb8a370d8e05cbff5c57eac0c8

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 1474f3970d1afd303e12ff14d06808eabb371576

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 07fe270ec07c138a70afe7a81e115a85c35c545c

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.