CVE-2026-98178

Source
https://cve.org/CVERecord?id=CVE-2026-98178
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98178.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-98178
Downstream
Published
2026-10-06T08:44:21Z
Modified
2026-10-08T02:52:50Z
Summary
drm/amdgpu: Skip KFD mapping clear before initialization
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: Skip KFD mapping clear before initialization

amdgpu_amdkfd_clear_kfd_mapping() assumes that a non-NULL kfd_dev has a fully populated node array. This is not true when KFD device initialization fails after probe.

For example, kgd2kfd_device_init() sets num_nodes before checking PCIe atomics support. On Polaris systems without the required atomics, it returns before allocating nodes[0], but the kfd_dev remains attached to the amdgpu device. A later GPU reset then dereferences nodes[0]->id.

Require the authoritative KFD initialization flag before walking the node array, matching the existing KFD reset and teardown paths.

(cherry picked from commit 4ac1835823c47903fbb278bbf474773c46f59edc)

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/98xxx/CVE-2026-98178.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
70cadefcc6160c575b04f763ada34c20e868d577
Fixed
157d3f1db7e7e6f320daa221fae84a4c13555b6f
Fixed
7f9caa70aef0950e06d395ca0035831214d88187

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98178.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
7.2.0
Fixed
7.2.8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98178.json"