Use-after-free in Linux kernel - CVE-2026-80608
Published: August 28, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to use-after-free in amdxdna_remove() and amdxdna_gem_obj_free() when handling device removal with force_iova mode enabled. A local user can trigger device removal and a subsequent object free to cause a denial of service.
Only systems with force_iova mode enabled are vulnerable.