Home

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/userq: fix access to stale wptr mapping Use drm_exec to take both locks i.e vm root bo and wptr_obj bo to access the mapping data properly. This fixes the security issue of unmap the wptr_obj while a queue creation is in progress and passing other bo at same address. (cherry picked from commit 1fc6c8ab45dbee096469c08c13f6099d57a52d6c)

PUBLISHED Reserved 2026-05-13 | Published 2026-06-08 | Updated 2026-06-09 | Assigner Linux

Product status

Default status
unaffected

5fb2f7fc21a3668e5794cc0d153641b9719713e1 (git) before 336a9186f3a4b65bbd865d93936605ac8a1a3991
affected

5fb2f7fc21a3668e5794cc0d153641b9719713e1 (git) before 6da7b1242da4455b11c24ce667d1cab1a348c8ea
affected

Default status
affected

6.16
affected

Any version before 6.16
unaffected

7.0.9 (semver)
unaffected

7.1-rc3 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/336a9186f3a4b65bbd865d93936605ac8a1a3991

git.kernel.org/...c/6da7b1242da4455b11c24ce667d1cab1a348c8ea

cve.org (CVE-2026-46311)

nvd.nist.gov (CVE-2026-46311)

Download JSON