SB20260812422 - Reachable assertion in Linux kernel amd amdgpu driver
Published: August 12, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Reachable assertion (CVE-ID: CVE-2026-68112)
CWE-ID: CWE-617 - Reachable Assertion
CVSSv4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper handling of assertion checks in gfx_v9_4_3.c when processing misaligned GPU addresses in amdgpu ring operations. A local user can trigger a BUG_ON condition to cause a denial of service.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/00f4050f7c367d7bdce347ca279ce467c434cf15
- https://git.kernel.org/stable/c/05aea3344c422fe95299bb1b21a04de30c7ea198
- https://git.kernel.org/stable/c/ac89ea915e8b848c7cbe97b1aad2dc4f5770c6d7
- https://git.kernel.org/stable/c/c59b57c2e0c8cced4350ff7792361ba2a79ee85c
- https://git.kernel.org/stable/c/cfb02825277526bd216b56be555a97a9e8612682