Review reviewHigh

CVE-2026-63881

Linux

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger get_queue_ids() computes array_size = num_queues * sizeof(uint32_t), which could overflow on 32-bit size_t build. using array_size() instead, it saturates to SIZE_MAX on overflow. (cherry picked from commit 2d57a0475f085c08b49312dfd8edcb461845f285)

CVSS
7.8
EPSS
-
- percentile
CISA KEV
Not listed
Published
2026.07.20
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability-
Technical severityCVSS 7.8

Vulnerability overview

In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger get_queue_ids() computes array_size = num_queues * sizeof(uint32_t), which could overflow on 32-bit size_t build. using array_size() instead, it saturates to SIZE_MAX on overflow. (cherry picked from commit 2d57a0475f085c08b49312dfd8edcb461845f285)

Affected product and versions

Product
Linux
Affected versions
>= a70a93fa568b4f05aba548dadb673703eccf5480 < 4e5f808b454167cc58d7084a407a554d8ddc694d, >= a70a93fa568b4f05aba548dadb673703eccf5480 < de70a80992396ee306ee3a2810ad28aa1608ba9b, >= a70a93fa568b4f05aba548dadb673703eccf5480 < 5cf4a41aa0d74e4c83f82d2ce233b5189ed4b43c, >= a70a93fa568b4f05aba548dadb673703eccf5480 < 4f9eeedc3d3151f8a226fd676c314a813edda5a1, >= a70a93fa568b4f05aba548dadb673703eccf5480 < 93f5534b35a05ef8a0109c1eefa800062fee810a, >= 6.5
Fixed versions
No verified fixed-version field is available yet

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Linux and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE
Not available
CVE-2026-63881 — Linux | SECUFOCUS NOW