CVE-2026-80703 PUBLISHED

drm/amdkfd: Fix missing authorization check in KFD_IOC_DBG_TRAP_DISABLE

Assigner: Linux
Reserved: 26.08.2026 Published: 28.08.2026 Updated: 28.08.2026

In the Linux kernel, the following vulnerability has been resolved:

drm/amdkfd: Fix missing authorization check in KFD_IOC_DBG_TRAP_DISABLE

Prevent unauthorized termination of active GPU debug sessions. Previously, users with /dev/kfd access could terminate another process's debug session without proper ownership or ptrace authorization.

(cherry picked from commit 4db4c5ffd5585b72622ecf6ffedf2da258ee23f5)

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to ce813614f63b020a826071276a92f2cfae7cba79 (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to b8c05061997408bf81759f2dd31cd5f66771d15f (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 9e52212aff8ed1fd9087728f61243ce3efd9d0ac (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 4070909ac042f44654aac72f7986ea550c96f591 (excl.)
  • affected from 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 to 99b2fe4f19e3be0a8d0a0b5ea98d855970889653 (excl.)
  • affected from 0 to 6.6.151 (excl.)
  • affected from 0 to 6.12.103 (excl.)
  • affected from 0 to 6.18.44 (excl.)
  • affected from 0 to 7.1.8 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • unaffected from 6.6.151 to 6.6.* (incl.)
  • unaffected from 6.12.103 to 6.12.* (incl.)
  • unaffected from 6.18.44 to 6.18.* (incl.)
  • unaffected from 7.1.8 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References