Incorrect Calculation of Buffer Size in Linux kernel - CVE-2026-31765
Published: May 2, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper resource size calculation in the amdgpu KFD GPU virtual memory allocation logic when initializing GPU virtual memory on 64K page-size systems. A local user can invoke the affected ioctl path to trigger a kernel crash.
The issue is triggered on systems using 64K pages because the allocated trap buffer size can exceed the reserved trap area size.