CVE-2026-80907

Source
https://cve.org/CVERecord?id=CVE-2026-80907
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80907.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80907
Downstream
Published
2026-09-04T17:19:18Z
Modified
2026-09-09T03:30:21Z
Summary
drm/amdgpu: Fix UVD dpb min size calculation for H264
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: Fix UVD dpb min size calculation for H264

This should use actual number of references from the decode message, instead of maximum derived from level.

(cherry picked from commit 64b525edb7e7bdfcdc77883c5e413804e2396856)

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80907.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d38ceaf99ed015f2a0b9af3499791bd3a3daae21
Fixed
fa96c24485942e277483cc70d9551d9e0111d7c5
Fixed
33f4ef585368fe93523dca1e5440e006f6e5146e
Fixed
38914cb2c6afb5fe00241ea3438e655822196378
Fixed
ff4361816b6ba4bd29b548b17d993056a1ae2502
Fixed
21a8084cd76223a13493237e04d45f5226d7cee6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80907.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.2.0
Fixed
6.6.153
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.105
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.46
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.10

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80907.json"