Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-89054.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-89054
Upstream
Published
2026-05-28T10:16:37Z
Modified
2026-08-28T17:46:35.791178143Z
Summary
CVE-2026-46220 affecting package kernel for versions less than 6.6.141.1-1
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu/sdma4: replace BUGON with WARNON in fence emission

sdmav40ringemitfence() contains two BUGON(addr & 0x3) assertions that verify fence writeback addresses are dword-aligned. These assertions can be reached from unprivileged userspace via crafted DRMIOCTLAMDGPU_CS submissions, causing a fatal kernel panic in a scheduler worker thread.

Replace both BUGON() calls with WARNON() to log the condition without crashing the kernel. A misaligned fence address at this point indicates a driver bug, but crashing the kernel is never the correct response when the assertion is reachable from userspace.

The CS IOCTL path is the correct place to filter invalid submissions; the ring emission callback is too late to do anything about it.

(cherry picked from commit b90250bd933afd1ba94d86d6b13821997b22b18e)

References

Affected packages

Azure Linux:3 / kernel

Package

Name
kernel
Purl
pkg:rpm/azure-linux/kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.6.141.1-1

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-89054.json"