CVE-2026-63845

Source
https://cve.org/CVERecord?id=CVE-2026-63845
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-63845.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-63845
Downstream
Published
2026-07-19T14:04:39.084Z
Modified
2026-07-21T03:47:33.359620314Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
drm/amdgpu/jpeg: set no_user_fence for JPEG v4.0 ring
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu/jpeg: set nouserfence for JPEG v4.0 ring

JPEG rings do not support 64-bit user fence writes, reject CS submissions with user fences.

(cherry picked from commit 8d0cac9478a3f046279c657d6a2545de49ae675a)

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/63xxx/CVE-2026-63845.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
b13111de32a9202c6d58bb7e4c06296b99c4d7e3
Fixed
d4e0172a1b614373385e9b7111b580f8d2e0b98f
Fixed
a676f16ea9a7df96d69f405afb6eb349571b3382
Fixed
6876d05b899102f4dfdb9ad560132126144c1c72
Fixed
af4b458daa597dae707bf3f1f74745f5fc133ca2
Fixed
e7e90b5839aeb8805ec83bb4da610b8dab8e184d

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-63845.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.19.0
Fixed
6.6.141
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.91
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.33
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.10

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-63845.json"