CVE-2026-43399: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/userq: Fix reference leak in amdgpu_userq_wait_ioctl Drop reference to syncobj and timeline fence when aborting the ioctl due output array being too small. (cherry picked from commit 68951e9c3e6bb22396bc42ef2359751c8315dd27)
Affected products
- Linux Linux Kernel: from 6.16, before 6.18.19 (fixed in 6.18.19); from 6.19, before 6.19.9 (fixed in 6.19.9); version 7.0 only
Published 2026-05-08. Last modified 2026-06-17.