CVE-2026-53139
Gravedad CVSS v3.1:
MEDIA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
25/06/2026
Última modificación:
06/07/2026
Descripción
*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
drm/v3d: Skip CSD when it has zeroed workgroups<br />
<br />
A compute shader dispatch encodes its workgroup counts in the CFG0..CFG2<br />
registers. Kicking off a dispatch with a zero count in any of the three<br />
dimensions is invalid. First, the hardware will process 0 as 65536,<br />
while the user-space driver exposes a maximum of 65535. Over that, a<br />
submission with a zeroed workgroup dimension should be a no-op.<br />
<br />
These zeroed counts can reach the dispatch path through an indirect CSD<br />
job, whose workgroup counts are only known once the indirect buffer is<br />
read and may legitimately be zero, but such scenario should only result in<br />
a no-op.<br />
<br />
Overwrite the indirect CSD job workgroup counts with the indirect BO<br />
ones, even if they are zeroed, and don&#39;t submit the job to the hardware<br />
when any of the workgroup counts is zero, so the job completes immediately<br />
instead of running the shader.
Impacto
Puntuación base 3.x
5.50
Gravedad 3.x
MEDIA
Productos y versiones vulnerables
| CPE | Desde | Hasta |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.3 (incluyendo) | 5.15.211 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.16 (incluyendo) | 6.1.177 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.2 (incluyendo) | 6.6.144 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.7 (incluyendo) | 6.12.95 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.13 (incluyendo) | 6.18.36 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.19 (incluyendo) | 7.0.13 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc2:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc3:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc4:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc5:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc6:*:*:*:*:*:* |
Para consultar la lista completa de nombres de CPE con productos y versiones, ver esta página
Referencias a soluciones, herramientas e información
- https://git.kernel.org/stable/c/11e6432836394e00d39e468cd514f9ddb66f1e49
- https://git.kernel.org/stable/c/7f93fad5ea0affc9e1505dd0f7596c0fdb496213
- https://git.kernel.org/stable/c/8b51c5406ad748c3d5575b66b6009b5dbbc08b80
- https://git.kernel.org/stable/c/9655b56b6de918e1c22b92f3880ae41b052cbd00
- https://git.kernel.org/stable/c/abb069fdf51a9ddabcc1ed125dafe54e2089900b
- https://git.kernel.org/stable/c/ad166139d123dc162e8636f0c7962516d04074e1
- https://git.kernel.org/stable/c/b3a8dd72b0d008ff142880b4dbe5ca37dcf962b4



