← Back to CVE search

CVE-2026-43398

AMDGPU

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add upper bound check on user inputs in wait ioctl Huge input values in amdgpu_userq_wait_ioctl can lead to a OOM and could be exploited. So check these input value against AMDGPU_USERQ_MAX_HANDLES which is big enough value for genuine use cases and could potentially avoid OOM. v2: squash in Srini-s fix (cherry picked from commit fcec012c664247531aed3e662f4280ff804d1476)

CVSS 5.5EPSS 0.126%Risk 0.56
View source
Published
2026-05-08 15:16:51
Affected versions
unknown
Type
Core software
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Operating systems
Linux