CVE-2026-63882: Linux
EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix NULL pointer bug in svm_range_set_attr The process_info could be NULL if user doesn't call kfd_ioctl_acquire_vm before calling kfd_ioctl_svm. (cherry picked from commit 83a26c812e0529eb040d31a76f73e33e637243d4)
Affected products
- Linux Linux: from 5.14, before 6.1.176 (fixed in 6.1.176); from 6.2, before 6.6.143 (fixed in 6.6.143); from 6.7, before 6.12.93 (fixed in 6.12.93); from 6.13, before 6.18.35 (fixed in 6.18.35); from 6.19, before 7.0.12 (fixed in 7.0.12)
Published 2026-07-19. Last modified 2026-07-27.