PT-2026-70963 · Linux · Linux Kernel
CVE-2026-68447
·
Published
2026-08-12
·
Updated
2026-08-18
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the drm/amdkfd component where the CRIU checkpoint process copies the MQD control stack using the
cp hqd cntl stack size value from hardware without bounding it to the allocated BO (Buffer Object) region. If the hardware field exceeds the queue's control stack allocation, the memcpy() function reads beyond the BO into adjacent GTT (Graphics Translation Table) memory, which can lead to the leakage of kernel data to userspace.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel