Division by Zero Vulnerability in Linux Kernel Affecting AMD Display
CVE-2026-90035
What is CVE-2026-90035?
A vulnerability exists in the Linux kernel related to the AMD display functionality, specifically within the get_estimated_bw() function. This function attempts to calculate estimated bandwidth based on a divisor, which can unexpectedly be zero due to prior mismanagement in the reset_bw_alloc_struct() function. If a connected USB4/DPIA tunneling device signals an estimated bandwidth change before the capability change occurs, it results in a division by zero error. This flaw can disrupt normal operations and is particularly relevant when handling dynamic changes in bandwidth allocation.
Affected Version(s)
Linux 8e5cfe547bf3beeb29d9608be68d22dff2b5012b < 4c5b61b9df6ab33b55f228e1b6579cefad11a9f7
Linux 8e5cfe547bf3beeb29d9608be68d22dff2b5012b
Linux 8e5cfe547bf3beeb29d9608be68d22dff2b5012b < 4814f28c45f58a71a80d09b80a60da6a063b539a