Improper resource shutdown or release in Linux kernel - CVE-2026-43298
Published: May 9, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper resource management in the VCN poison irq release logic in the amdgpu driver when deinitializing a virtual function. A local user can trigger device deinitialization to cause a denial of service.
The issue occurs on VF configurations because VCN poison irq is not enabled in VCNv2.5.