UBUNTU-CVE-2026-80909
Dashboard / Vulnerabilities / UBUNTU-CVE-2026-80909
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Reject UVD message with invalid number of h265 refs Same change as for h264, avoids overflow later when calculating min dpb size. (cherry picked from commit a4b0720e4f1601f97f59a2be9c1b4b94fa6527d5)
References: https://ubuntu.com/security/CVE-2026-80909, https://www.cve.org/CVERecord?id=CVE-2026-80909, https://git.kernel.org/linus/9fca434208f1f9ab977feac62df8ebb1cc7ce893
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/linux?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
Introduced- 0
Fixed -None
Affected versions
3.11.0-12.19
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
