๐Ÿ” CVE Alert

CVE-2026-63878

UNKNOWN 0.0

drm/amdgpu: check num_entries in GEM_OP GET_MAPPING_INFO

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: check num_entries in GEM_OP GET_MAPPING_INFO kvcalloc(args->num_entries, sizeof(*vm_entries), GFP_KERNEL) at amdgpu_gem.c:1050 uses the user-supplied num_entries directly without any upper bounds check. Since num_entries is a __u32 and sizeof(drm_amdgpu_gem_vm_entry) is 32 bytes, a large num_entries produces an allocation exceeding INT_MAX, triggering WARNING in __kvmalloc_node_noprof(), causing a kernel WARNING, TAINT_WARN, and panic on CONFIG_PANIC_ON_WARN=y systems. Add a size bounds check before we invoke the kvzalloc() to reject oversized num_entries early with -EINVAL. (cherry picked from commit 1fe7bf5457f6efd7be60b17e23163ba54341d73d)

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 19, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
4d82724f7f2b847eb0454b1aab5450545b39abd4 < f059b4c493df3e54fe3ffe4658009c31864275da 4d82724f7f2b847eb0454b1aab5450545b39abd4 < 967a00b8e06a7734aded23861faba9ee2462be87 4d82724f7f2b847eb0454b1aab5450545b39abd4 < a1ba4594232c87c3b8defd6f89a2e40f8b08395d
Linux / Linux
6.18

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/f059b4c493df3e54fe3ffe4658009c31864275da git.kernel.org: https://git.kernel.org/stable/c/967a00b8e06a7734aded23861faba9ee2462be87 git.kernel.org: https://git.kernel.org/stable/c/a1ba4594232c87c3b8defd6f89a2e40f8b08395d