CVE-2026-89813

Summary

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: force complete the KIQ ring fences on reset

Like the MES scheduler ring, the KIQ ring sets no_scheduler = true and uses a polling fence, so it is skipped by the force-completion loop in amdgpu_device_pre_asic_reset(). Its hw fence value lives in wb (GTT) memory and survives a MODE1 reset while fence_drv.sync_seq keeps advancing, so after a reset the first KIQ submission can poll forever on a seq that is never written back.

Force complete the KIQ ring fences too so their hw fence is realigned to sync_seq.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < bdd6a58743e00ebc6d52b9cdf9aafb4e535e0b71affected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < fd65d1742992361fc2201ecb4e43411e6e417fcbaffected
LinuxLinux0 < 7.2.5affected
LinuxLinux7.2.5 <= 7.2.*unaffected
LinuxLinux7.3-rc1 <= *unaffected

Weaknesses

References