Incorrect Calculation of Buffer Size in Linux kernel - CVE-2026-80907

 

Incorrect Calculation of Buffer Size in Linux kernel - CVE-2026-80907

Published: September 6, 2026


Vulnerability identifier: #VU147199
CSH Severity: Low
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-80907
CWE-ID: CWE-131
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to cause a denial of service.

The vulnerability exists due to an incorrect calculation of the decoded picture buffer minimum size in the amdgpu UVD H.264 decode message handler when processing H.264 decode messages. A local user can submit a crafted H.264 decode message to cause a denial of service.


Affected software

Linux kernel

How to mitigate CVE-2026-80907

Install security update from vendor's repository.


External References

Related Security Bulletins