{"id":"CVE-2026-90286","published":"2026-09-17T17:17:25.500","lastModified":"2026-09-18T18:17:51.573","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu/gfx6: Use PFP on the compute queues too\n\nOn GFX6, the compute rings use the same CP path as\nthe graphics ring. The only difference is that they\ndon't support draw commands. (As opposed to GFX7 and\nnewer which have a separate command parser that is\ncalled MEC for compute queues.)\n\nThis means that we have to take into consideration\nthat the PFP also exists on compute queues on GFX6:\n\nUse PFP for register writes on both graphics and\ncompute queues.\n\nIn the pipeline sync, use the PFP to wait for the\nprevious fence (and not the ME) to prevent the PFP\nfrom starting to execute the next submission while\nthe ME is still in the previous submission.\n\nAfter a VM flush, emit PFP_SYNC_ME on compute\nqueues as well.","cvssScore":8.8,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/2aa869c6b23e0b1b7f39f762618852811d75deb9","tags":[]},{"url":"https://git.kernel.org/stable/c/60f20946cd318518ddc2c0da12103c666b2b9564","tags":[]},{"url":"https://git.kernel.org/stable/c/8d752f1bb73fabe5a425acbf5c767c0fe68bf3c5","tags":[]},{"url":"https://git.kernel.org/stable/c/b5d1d3e4519dc8f1b55d6b236848bed67b11a2e8","tags":[]},{"url":"https://git.kernel.org/stable/c/e1d3018e3621c90cec070b6915836ae129656663","tags":[]},{"url":"https://git.kernel.org/stable/c/e399e9d7e291ccbeba6560fb8278c8d2aa744521","tags":[]},{"url":"https://git.kernel.org/stable/c/f37211b9c01433f0bbb4709d25df7a0257cf915b","tags":[]},{"url":"https://git.kernel.org/stable/c/fbabc39b4f0fc771b00525ffd448be6a84355048","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"This vulnerability in the Linux kernel's AMD GPU driver allows unauthorized access to the compute queues, potentially leading to privilege escalation or data leakage.","exploitability":"Exploitation requires kernel-level access and specific knowledge of AMD GPU architecture. Precondition is the presence of an affected AMD GPU driver version on the system.","blast_radius":"If exploited, this could lead to full system compromise, as it allows execution of arbitrary code with kernel privileges.","remediation":"Upgrade to the Linux kernel version 6.1.18 or later.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["kernel","amd","privilege-escalation","gpu"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-29T09:25:16.076Z"}}