CVE-2026-72360

Source
https://cve.org/CVERecord?id=CVE-2026-72360
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72360.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-72360
Downstream
Published
2026-08-15T05:56:00.076Z
Modified
2026-08-18T03:56:41.963904018Z
Severity
  • 8.4 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:H CVSS Calculator
Summary
drm/xe/pf: Don't attempt to process FAST_REQ or EVENT relays
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/xe/pf: Don't attempt to process FAST_REQ or EVENT relays

Currently defined VF/PF relay actions use regular REQUEST messages only and the PF shouldn't attempt to handle FAST_REQUEST nor EVENT messages as this would result in breaking the VFPF ABI protocol and also might trigger an assert on the PF side.

(cherry picked from commit 1714d360fc5ae2e0886a69e979095d9c7ff3568a)

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72360.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
98e62805921cebcd2fcac3692037ca2ebef63b4a
Fixed
499be4b5d64209e9f18c9442f9fbeef7155ae900
Fixed
adc7dda728ca3e340a413e3bbc10cf159e1866a4
Fixed
a4208d8032abd7f591581994f31e23b80b8fe659
Fixed
ed8b0d731892c68b41ecbd27c952af284816dec1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72360.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.11.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72360.json"