CVE Database
/

CVE-2026-45980

Back to search

CVE-2026-45980

Published: May 27, 2026

Modified: May 30, 2026

PUBLISHED

CVSS v3.1

7.8

HIGH

Description

In the Linux kernel, the following vulnerability has been resolved: accel/amdxdna: Stop job scheduling across aie2_release_resource() Running jobs on a hardware context while it is in the process of releasing resources can lead to use-after-free and crashes. Fix this by stopping job scheduling before calling aie2_release_resource() and restarting it after the release completes. Additionally, aie2_sched_job_run() now checks whether the hardware context is still active.

VendorProductVersions

Linux

Linux

affected
4fd6ca90fc7f509977585d39885f21b2911123f3 - < b79d31dce49b50c79620389b3639280802a86960
affected
4fd6ca90fc7f509977585d39885f21b2911123f3 - < 688c3ff079b10e4600f040944430d3d4ff448a15
affected
4fd6ca90fc7f509977585d39885f21b2911123f3 - < f1370241fe8045702bc9d0812b996791f0500f1b
affected
36f781a3f0deac92f169416997a17e73538cf470
affected
6.14.9 - < 6.15

Linux

Linux

affected
6.15
unaffected
0 - < 6.15
unaffected
6.18.14 - <= 6.18.*
unaffected
6.19.4 - <= 6.19.*
unaffected
7.0 - <= *

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Local

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now