SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-63845

HIGH · CVSS 7.8 EPSS 0.13%

Source: NVD + CISA KEV + EPSS · Published 2026-07-19 · Last synced 2026-08-18

CyberRota Analysis

AI-Generated

The vulnerability affects the Linux kernel's amdgpu driver, specifically related to the JPEG v4.0 ring, which improperly handles 64-bit user fence writes, leading to potential denial of service through rejected command submissions. This high-severity issue could compromise system stability and performance, making it critical for organizations using affected Linux distributions with AMD graphics hardware to prioritize patching. System administrators and security teams should assess their environments for exposure and apply the necessary updates promptly.

CVE
CVE-2026-63845
Severity
HIGH
CVSS
7.8
EPSS
0.13%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/jpeg: set no_user_fence for JPEG v4.0 ring JPEG rings do not support 64-bit user fence writes, reject CS submissions with user fences. (cherry picked from commit 8d0cac9478a3f046279c657d6a2545de49ae675a)