Linux Kernel Vulnerability Affecting AMD GPU Command Submission
CVE-2026-80576
What is CVE-2026-80576?
A vulnerability exists in the Linux kernel affecting AMD GPUs where oversized instruction buffers (IBs) can be submitted without appropriate limits. This flaw allows user-supplied buffer lengths to exceed safe thresholds, potentially corrupting adjacent control bits and destabilizing the command submission process. To address this, a new per-ring packet size limit has been implemented, which rejects command submissions that exceed specified limits. This enhancement ensures better stability and security during operations with GFX, compute, SDMA, and VPE ring types.
Affected Version(s)
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 6e164ba1057175fb8a370d8e05cbff5c57eac0c8
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 1474f3970d1afd303e12ff14d06808eabb371576
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 07fe270ec07c138a70afe7a81e115a85c35c545c