CVE-2026-80907
Status: ReceivedUnscored—
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: Fix UVD dpb min size calculation for H264
This should use actual number of references from the decode message, instead of maximum derived from level.
(cherry picked from commit 64b525edb7e7bdfcdc77883c5e413804e2396856)
CVSS
NVD hasn't assigned a CVSS score to this CVE (common since the April 2026 policy change).
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 0.21%
- Percentile among all scored CVEs: 10
- Score date: 10/5/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (1)
⚠ AI-inferred from the description — NVD hasn't analyzed this CVE yet, these aren't verified CPEs.
References
- https://git.kernel.org/stable/c/21a8084cd76223a13493237e04d45f5226d7cee6
- https://git.kernel.org/stable/c/33f4ef585368fe93523dca1e5440e006f6e5146e
- https://git.kernel.org/stable/c/38914cb2c6afb5fe00241ea3438e655822196378
- https://git.kernel.org/stable/c/fa96c24485942e277483cc70d9551d9e0111d7c5
- https://git.kernel.org/stable/c/ff4361816b6ba4bd29b548b17d993056a1ae2502
Raw JSON (NVD)
Show
{
"id": "CVE-2026-80907",
"cveTags": [],
"metrics": {},
"affected": [
{
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"affectedData": [
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "d38ceaf99ed015f2a0b9af3499791bd3a3daae21",
"lessThan": "fa96c24485942e277483cc70d9551d9e0111d7c5",
"versionType": "git"
},
{
"status": "affected",
"version": "d38ceaf99ed015f2a0b9af3499791bd3a3daae21",
"lessThan": "33f4ef585368fe93523dca1e5440e006f6e5146e",
"versionType": "git"
},
{
"status": "affected",
"version": "d38ceaf99ed015f2a0b9af3499791bd3a3daae21",
"lessThan": "38914cb2c6afb5fe00241ea3438e655822196378",
"versionType": "git"
},
{
"status": "affected",
"version": "d38ceaf99ed015f2a0b9af3499791bd3a3daae21",
"lessThan": "ff4361816b6ba4bd29b548b17d993056a1ae2502",
"versionType": "git"
},
{
"status": "affected",
"version": "d38ceaf99ed015f2a0b9af3499791bd3a3daae21",
"lessThan": "21a8084cd76223a13493237e04d45f5226d7cee6",
"versionType": "git"
}
],
"programFiles": [
"drivers/gpu/drm/amd/amdgpu/amdgpu_uvd.c"
],
"defaultStatus": "unaffected"
},
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "4.2"
},
{
"status": "unaffected",
"version": "0",
"lessThan": "4.2",
"versionType": "semver"
},
{
"status": "unaffected",
"version": "6.6.153",
"versionType": "semver",
"lessThanOrEqual": "6.6.*"
},
{
"status": "unaffected",
"version": "6.12.105",
"versionType": "semver",
"lessThanOrEqual": "6.12.*"
},
{
"status": "unaffected",
"version": "6.18.46",
"versionType": "semver",
"lessThanOrEqual": "6.18.*"
},
{
"status": "unaffected",
"version": "7.1.10",
"versionType": "semver",
"lessThanOrEqual": "7.1.*"
},
{
"status": "unaffected",
"version": "7.2",
"versionType": "original_commit_for_fix",
"lessThanOrEqual": "*"
}
],
"programFiles": [
"drivers/gpu/drm/amd/amdgpu/amdgpu_uvd.c"
],
"defaultStatus": "affected"
}
]
}
],
"published": "2026-09-04T18:18:00.393",
"references": [
{
"url": "https://git.kernel.org/stable/c/21a8084cd76223a13493237e04d45f5226d7cee6",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/33f4ef585368fe93523dca1e5440e006f6e5146e",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/38914cb2c6afb5fe00241ea3438e655822196378",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/fa96c24485942e277483cc70d9551d9e0111d7c5",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/ff4361816b6ba4bd29b548b17d993056a1ae2502",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}
],
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu: Fix UVD dpb min size calculation for H264\n\nThis should use actual number of references from the decode\nmessage, instead of maximum derived from level.\n\n(cherry picked from commit 64b525edb7e7bdfcdc77883c5e413804e2396856)"
}
],
"lastModified": "2026-09-07T15:17:33.510",
"sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}