PT-2026-52235 · Linux+1 · Linux Kernel+1

CVE-2026-53139

·

Published

2026-06-25

·

Updated

2026-09-07

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the drm/v3d component where a compute shader dispatch (CSD) may be initiated with zero workgroup counts in the CFG0, CFG1, or CFG2 registers. This occurs during indirect CSD jobs when the indirect buffer contains zeroed workgroup dimensions. Because the hardware interprets a value of 0 as 65536—exceeding the user-space driver maximum of 65535—such submissions should be treated as a no-op. Failure to skip these jobs can lead to the shader running with incorrect dimensions instead of completing immediately.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-53139
ECHO-D4F1-FF9F-2C77
OPENSUSE-SU-2026:21388-1
SUSE-SU-2026:22742-1
SUSE-SU-2026:22769-1
SUSE-SU-2026:22809-1
SUSE-SU-2026:22810-1
SUSE-SU-2026:22812-1
SUSE-SU-2026:22835-1
SUSE-SU-2026:22903-1
SUSE-SU-2026:22904-1
SUSE-SU-2026:3130-1
SUSE-SU-2026:3166-1
USN-8726-1
USN-8727-1
USN-8728-1

Affected Products

Linux Kernel
Ubuntu