Linux kernel AMDGPU VCN3 OOB read fix
CVE-2026-46230 Published on May 28, 2026
drm/amdgpu/vcn3: Prevent OOB reads when parsing dec msg
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu/vcn3: Prevent OOB reads when parsing dec msg
Check bounds against the end of the BO whenever we access the msg.
Products Associated with CVE-2026-46230
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 and below 638d3e0b9eb77aa53fdd60e2b928761d16ba76fa is affected.
- Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 and below 870c8738c3774336baedddd0240951d078a703b8 is affected.
- Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 and below 638e48ee39d0f2af9336f917a6f5d6692dd64d93 is affected.
- Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 and below e382e0b81a3e7bd21504fee1d01ae8b08f84d3a7 is affected.
- Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 and below b193019860d61e92da395eae2011f2f6716b182f is affected.
- Before 6.6.140 is affected.
- Before 6.12.90 is affected.
- Before 6.18.32 is affected.
- Before 7.0.9 is affected.
- Version 6.6.140, <= 6.6.* is unaffected.
- Version 6.12.90, <= 6.12.* is unaffected.
- Version 6.18.32, <= 6.18.* is unaffected.
- Version 7.0.9, <= 7.0.* is unaffected.
- Version 7.1-rc1, <= * is unaffected.