{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-63845","assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","state":"PUBLISHED","assignerShortName":"Linux","dateReserved":"2026-07-19T07:54:57.016Z","datePublished":"2026-07-19T14:04:39.084Z","dateUpdated":"2026-08-05T12:36:23.065Z"},"containers":{"cna":{"providerMetadata":{"orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux","dateUpdated":"2026-08-05T12:36:23.065Z"},"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu/jpeg: set no_user_fence for JPEG v4.0 ring\n\nJPEG rings do not support 64-bit user fence writes, reject CS\nsubmissions with user fences.\n\n(cherry picked from commit 8d0cac9478a3f046279c657d6a2545de49ae675a)"}],"metrics":[{"cvssV3_1":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH"},"scenarios":[{"lang":"en","value":"AV:L - Exploitation requires a local DRM render-node client to issue DRM_IOCTL_AMDGPU_CS; the vulnerable path runs when amdgpu_cs_ioctl accepts a command submission with an AMDGPU_CHUNK_ID_FENCE user fence targeting the JPEG v4.0 decode ring (AMDGPU_HW_IP_VCN_JPEG).\nAC:L - An attacker with render-node access can deterministically submit a JPEG-ring CS with a user-fence chunk; no race or victim-dependent timing is required beyond having an affected VCN 4.0.0/4.0.2/4.0.4 AMD GPU (RDNA3-class hardware).\nPR:L - Only a local unprivileged user able to open /dev/dri/renderD* and submit CS jobs is needed; amdgpu_cs_ioctl is exposed to render clients (DRM_RENDER_ALLOW) without requiring root or DRM master privileges.\nUI:N - No victim interaction is required; the attacker directly crafts and submits the malicious ioctl from their own GPU client process.\nS:U - The corrupted GPU fence write is performed through the submitting context's GPU VM and does not cross a VM/host or IOMMU security boundary; impact remains within the attacker's kernel/GPU security scope (local privilege escalation scenario).\nC:H - amdgpu_ib.c always emits user fences with AMDGPU_FENCE_FLAG_64BIT, but jpeg_v2_0_dec_ring_emit_fence (used by JPEG v4.0) only supports 32-bit writes and WARN_ONs the 64-bit flag, causing the hardware to perform an unsupported GPU memory write that can corrupt memory and be leveraged for information disclosure.\nI:H - The unsupported fence path issues a GPU MEM_WR to an attacker-chosen GPU virtual address, providing a memory-corruption primitive that can be developed into arbitrary writes and potential kernel code execution.\nA:H - Submitting an unsupported 64-bit user fence to the JPEG ring can hang or reset the GPU and destabilize the amdgpu driver, causing denial of service to GPU workloads and potential system-wide availability impact."}]}],"affected":[{"product":"Linux","vendor":"Linux","defaultStatus":"unaffected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/gpu/drm/amd/amdgpu/jpeg_v4_0.c"],"versions":[{"version":"b13111de32a9202c6d58bb7e4c06296b99c4d7e3","lessThan":"d4e0172a1b614373385e9b7111b580f8d2e0b98f","status":"affected","versionType":"git"},{"version":"b13111de32a9202c6d58bb7e4c06296b99c4d7e3","lessThan":"a676f16ea9a7df96d69f405afb6eb349571b3382","status":"affected","versionType":"git"},{"version":"b13111de32a9202c6d58bb7e4c06296b99c4d7e3","lessThan":"6876d05b899102f4dfdb9ad560132126144c1c72","status":"affected","versionType":"git"},{"version":"b13111de32a9202c6d58bb7e4c06296b99c4d7e3","lessThan":"af4b458daa597dae707bf3f1f74745f5fc133ca2","status":"affected","versionType":"git"},{"version":"b13111de32a9202c6d58bb7e4c06296b99c4d7e3","lessThan":"e7e90b5839aeb8805ec83bb4da610b8dab8e184d","status":"affected","versionType":"git"}]},{"product":"Linux","vendor":"Linux","defaultStatus":"affected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/gpu/drm/amd/amdgpu/jpeg_v4_0.c"],"versions":[{"version":"5.19","status":"affected"},{"version":"0","lessThan":"5.19","status":"unaffected","versionType":"semver"},{"version":"6.6.141","lessThanOrEqual":"6.6.*","status":"unaffected","versionType":"semver"},{"version":"6.12.91","lessThanOrEqual":"6.12.*","status":"unaffected","versionType":"semver"},{"version":"6.18.33","lessThanOrEqual":"6.18.*","status":"unaffected","versionType":"semver"},{"version":"7.0.10","lessThanOrEqual":"7.0.*","status":"unaffected","versionType":"semver"},{"version":"7.1","lessThanOrEqual":"*","status":"unaffected","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.19","versionEndExcluding":"6.6.141"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.19","versionEndExcluding":"6.12.91"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.19","versionEndExcluding":"6.18.33"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.19","versionEndExcluding":"7.0.10"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.19","versionEndExcluding":"7.1"}]}]}],"references":[{"url":"https://git.kernel.org/stable/c/d4e0172a1b614373385e9b7111b580f8d2e0b98f"},{"url":"https://git.kernel.org/stable/c/a676f16ea9a7df96d69f405afb6eb349571b3382"},{"url":"https://git.kernel.org/stable/c/6876d05b899102f4dfdb9ad560132126144c1c72"},{"url":"https://git.kernel.org/stable/c/af4b458daa597dae707bf3f1f74745f5fc133ca2"},{"url":"https://git.kernel.org/stable/c/e7e90b5839aeb8805ec83bb4da610b8dab8e184d"}],"title":"drm/amdgpu/jpeg: set no_user_fence for JPEG v4.0 ring","x_generator":{"engine":"bippy-1.2.0"}}}}