Missing Authorization Check in Linux Kernel's GPU Debugging Feature
CVE-2026-80703

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
28 August 2026

What is CVE-2026-80703?

A vulnerability exists in the Linux kernel's GPU debugging interface, specifically in the KFD_IOC_DBG_TRAP_DISABLE operation, where an insufficient authorization mechanism allows users with access to /dev/kfd to terminate other processes' debug sessions without appropriate privileges. This flaw can lead to unauthorized manipulations and disruption of active debugging sessions, posing risks to system integrity and security.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 9e52212aff8ed1fd9087728f61243ce3efd9d0ac

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.