NULL pointer dereference in Linux kernel - CVE-2026-93139
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper initialization in the AMDGPU MES hung queue database array when accessing array entries indexed by an XCC ID of 2 or greater. A local user can trigger access to an uninitialized array entry to cause a denial of service.
Only systems using multi-XCC GPUs are affected.