Integer overflow in Linux kernel - CVE-2026-89818
Published: September 17, 2026
Vulnerability details
The vulnerability allows a local user to disclose sensitive information and cause a denial of service.
The vulnerability exists due to an integer overflow in the AMDGPU VCN message parser when processing a VCN message with an oversized buffer count. A local user can submit a specially crafted VCN message to disclose sensitive information and cause a denial of service.
Triggering the issue additionally requires an approximately 4 GiB mapping.
Affected software
How to mitigate CVE-2026-89818
External References
- https://git.kernel.org/stable/c/47799e1f893d47d8af231710a61065e3ec8a13e8
- https://git.kernel.org/stable/c/4d7390530853eb7befda9cc786e4c86e8ad7ac9e
- https://git.kernel.org/stable/c/6dceaeceaa7c8396339f3ea34b0110cb912ca61b
- https://git.kernel.org/stable/c/7e28853c78c20bb8ba4c1dba702430cd05e09f76
- https://git.kernel.org/stable/c/9ae19bd60891bea0a7b7504cc8dbfe74570ac3b3
- https://git.kernel.org/stable/c/c2340281be4ddacb8c203e2bce59b126d1d6c4c8