CVE-2026-63881

Source
https://cve.org/CVERecord?id=CVE-2026-63881
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-63881.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-63881
Downstream
Published
2026-07-19T14:54:53.676Z
Modified
2026-07-21T03:47:31.634157488Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger

getqueueids() computes arraysize = numqueues * sizeof(uint32t), which could overflow on 32-bit sizet build. using arraysize() instead, it saturates to SIZEMAX on overflow.

(cherry picked from commit 2d57a0475f085c08b49312dfd8edcb461845f285)

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/63xxx/CVE-2026-63881.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
a70a93fa568b4f05aba548dadb673703eccf5480
Fixed
4e5f808b454167cc58d7084a407a554d8ddc694d
Fixed
de70a80992396ee306ee3a2810ad28aa1608ba9b
Fixed
5cf4a41aa0d74e4c83f82d2ce233b5189ed4b43c
Fixed
4f9eeedc3d3151f8a226fd676c314a813edda5a1
Fixed
93f5534b35a05ef8a0109c1eefa800062fee810a

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-63881.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.5.0
Fixed
6.6.143
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.93
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.35
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.12

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-63881.json"