CVE-2026-63882

Source
https://cve.org/CVERecord?id=CVE-2026-63882
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63882.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-63882
Downstream
Published
2026-07-19T14:54:55.027Z
Modified
2026-07-22T03:31:47.253546957Z
Summary
drm/amdkfd: fix NULL pointer bug in svm_range_set_attr
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amdkfd: fix NULL pointer bug in svmrangeset_attr

The processinfo could be NULL if user doesn't call kfdioctlacquirevm before calling kfdioctlsvm.

(cherry picked from commit 83a26c812e0529eb040d31a76f73e33e637243d4)

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/63xxx/CVE-2026-63882.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
42de677f79999791bee4e21be318c32d90ab62c6
Fixed
e4dcb5d6360319609bc5b05fb40e98b0af6bc674
Fixed
6495cc09f7e6c2af571b3e2e4640283b3792ebf2
Fixed
d4e73a047d4ea866b75ee4b879d0d787dfa2704c
Fixed
2f9c3c161692f5bf1436e869a651bed10936e071
Fixed
c24eee21f9a943374fd64260a6e17dc3984e3d0e
Fixed
e984d61d92e702096058f0f828f4b2b8563b88ce

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63882.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.14.0
Fixed
6.1.176
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.143
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.93
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.35
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.12

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63882.json"