CVE-2026-80540 PUBLISHED

drm/amdgpu: Fix UVD decode image min size calculation

Assigner: Linux
Reserved: 26.08.2026 Published: 26.08.2026 Updated: 26.08.2026

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: Fix UVD decode image min size calculation

This needs to use pitch instead of width. Also reject pitch over 4096 to avoid overflow.

(cherry picked from commit b41c8cb12e202b220353332ab87dc01a11f69304)

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to bc7397a033ac52f6d8c9bb6510d61694b2a3fce7 (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to d058f7a6709441afe1784eecd8c0643dd84750bc (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to b7549e3f96c78921751c4b3e69af729662130d83 (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 60539d517e8439621532d8c01091ac049c596b4b (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 271a7da84a6262a09de549912dcf6a749d169cb6 (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 25ee120f3803ad9e416ef9f76f4c3234cc4d645b (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 5cbd8af02b0b9c8723fa30edcf6fccab5170af8d (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to b8bb9ba3f101a1b0011f785a577a4a0a38371174 (excl.)
  • affected from 0 to 5.10.266 (excl.)
  • affected from 0 to 5.15.217 (excl.)
  • affected from 0 to 6.1.184 (excl.)
  • affected from 0 to 6.6.153 (excl.)
  • affected from 0 to 6.12.105 (excl.)
  • affected from 0 to 6.18.46 (excl.)
  • affected from 0 to 7.1.10 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • unaffected from 5.10.266 to 5.10.* (incl.)
  • unaffected from 5.15.217 to 5.15.* (incl.)
  • unaffected from 6.1.184 to 6.1.* (incl.)
  • unaffected from 6.6.153 to 6.6.* (incl.)
  • unaffected from 6.12.105 to 6.12.* (incl.)
  • unaffected from 6.18.46 to 6.18.* (incl.)
  • unaffected from 7.1.10 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References