๐Ÿ” CVE Alert

CVE-2026-68108

HIGH 8.8

drm/amdgpu/vce: fix integer overflow in image size

CVSS Score
8.8
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vce: fix integer overflow in image size Fix a security vulnerability where malicious VCE command streams with oversized dimensions (e.g. 65536ร—65536) cause 32-bit integer overflow, wrapping the calculated buffer size to 0. This bypasses validation and allows GPU firmware to perform out-of-bound memory access. The fix uses 64-bit arithmetic to detect overflow and rejects invalid dimensions before they reach the hardware. V2: remove redundant check V3: modify max height value V4: remove size64 (cherry picked from commit cbe408dba581755ad1279a487ec786d8927d778d)

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 10, 2026
Last Updated Aug 19, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
f1689ec1b0b1256d0e69653cd4aaeee44aafdf5c < 893db20383800cfe92e638705984eebb13bc81a5 f1689ec1b0b1256d0e69653cd4aaeee44aafdf5c < a07430abd556de3707adfcadcc60db3fa64e4b2b f1689ec1b0b1256d0e69653cd4aaeee44aafdf5c < a6d7065b91a14790980ce6f4960db0ca8c3c9940 f1689ec1b0b1256d0e69653cd4aaeee44aafdf5c < 7eebef042c12dfe0568593ee6a8926d16505925e f1689ec1b0b1256d0e69653cd4aaeee44aafdf5c < 00c311a13d225266800c712f2b7db2711c6897de f1689ec1b0b1256d0e69653cd4aaeee44aafdf5c < 186bfdc4e26d019b2e7570cb121964a1d89b2e5b
Linux / Linux
4.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/893db20383800cfe92e638705984eebb13bc81a5 git.kernel.org: https://git.kernel.org/stable/c/a07430abd556de3707adfcadcc60db3fa64e4b2b git.kernel.org: https://git.kernel.org/stable/c/a6d7065b91a14790980ce6f4960db0ca8c3c9940 git.kernel.org: https://git.kernel.org/stable/c/7eebef042c12dfe0568593ee6a8926d16505925e git.kernel.org: https://git.kernel.org/stable/c/00c311a13d225266800c712f2b7db2711c6897de git.kernel.org: https://git.kernel.org/stable/c/186bfdc4e26d019b2e7570cb121964a1d89b2e5b