CVE-2026-72090

Description

A flaw was found in the Linux kernel's amdxdna graphics acceleration driver. A local user could exploit an incorrect client handling issue within the amdxdna_drm_sync_bo_ioctl() function. When performing a SYNC_DIRECT_FROM_DEVICE operation, the amdxdna_hwctx_sync_debug_bo() function is called with an incorrect client, leading to a mismatch in the handle namespace and hardware context ownership. This could potentially allow unauthorized access to debug buffer objects.

Common Vulnerability Scoring System (CVSS) Score Details

Info alert:Important note

CVSS scores for open source components depend on vendor-specific factors (e.g. version or build chain). Therefore, Red Hat's score and impact rating can be different from NVD and other vendors. Red Hat remains the authoritative CVE Naming Authority (CNA) source for its products and services (see Red Hat classifications).

The following CVSS metrics and score provided are preliminary and subject to review.

CVSS v3 Score Breakdown

Red HatNVDcve.org
Base Score5.5N/A7.8
Attack VectorLocalN/ALocal
Attack ComplexityLowN/ALow
Privileges RequiredLowN/ALow
User InteractionNoneN/ANone
ScopeUnchangedN/AUnchanged
ConfidentialityNoneN/AHigh
Integrity ImpactNoneN/AHigh
Availability ImpactHighN/AHigh

Vector

Red Hat: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

cve.org: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Understanding the Weakness (CWE)

Access Control

Technical Impact: Gain Privileges or Assume Identity

An attacker may be able to elevate privileges.

Confidentiality

Technical Impact: Read Application Data

An attacker may be able to obtain sensitive information.

Integrity,Confidentiality,Availability

Technical Impact: Execute Unauthorized Code or Commands

An attacker may be able to execute code.

Frequently Asked Questions

Want to get errata notifications? Sign up here.