SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-63854

HIGH · CVSS 7.8 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-07-19 · Last synced 2026-08-18

CyberRota Analysis

AI-Generated

A vulnerability in the Linux kernel affects the VCN v3.0 encoder and decoder rings, where they improperly handle 64-bit user fence writes, leading to potential denial of service through rejected command submissions. This high-severity flaw could allow attackers to disrupt video processing tasks, making it critical for organizations utilizing Linux systems with AMD graphics to prioritize patching. System administrators and security teams should assess their environments for affected configurations and apply the necessary updates to mitigate risks.

CVE
CVE-2026-63854
Severity
HIGH
CVSS
7.8
EPSS
0.12%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn: set no_user_fence for VCN v3.0 enc/dec rings VCN encoder and decoder rings do not support 64-bit user fence writes, reject CS submissions with user fences. (cherry picked from commit 663bed3c7b8b9a7624b0d95d300ddae034ad0614)