Vulnerability Bulletins

CVE-2026-93139

   
Affected software AMD
 
In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu/mes: Fix hung_queue_db_array loop limit for multi-XCC

The loop iterated only AMDGPU_MAX_MES_PIPES times, leaving entries
uninitialized for multi-XCC GPUs. This causes null pointer dereferences
when accessing arrays indexed by XCC ID >= 2. Extend the loop to cover
all XCCs (AMDGPU_MAX_MES_PIPES * num_xcc), matching other per-XCC
arrays.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-93139