CVE-2026-72360

high

Description

In the Linux kernel, the following vulnerability has been resolved: drm/xe/pf: Don't attempt to process FAST_REQ or EVENT relays Currently defined VF/PF relay actions use regular REQUEST messages only and the PF shouldn't attempt to handle FAST_REQUEST nor EVENT messages as this would result in breaking the VFPF ABI protocol and also might trigger an assert on the PF side. (cherry picked from commit 1714d360fc5ae2e0886a69e979095d9c7ff3568a)

References

https://git.kernel.org/stable/c/ed8b0d731892c68b41ecbd27c952af284816dec1

https://git.kernel.org/stable/c/adc7dda728ca3e340a413e3bbc10cf159e1866a4

https://git.kernel.org/stable/c/a4208d8032abd7f591581994f31e23b80b8fe659

https://git.kernel.org/stable/c/499be4b5d64209e9f18c9442f9fbeef7155ae900

Details

Source: Mitre, NVD

Published: 2026-08-15

Updated: 2026-08-17

Risk Information

CVSS v2

Base Score: 6.2

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:C/A:C

Severity: Medium

CVSS v3

Base Score: 8.4

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:H

Severity: High

EPSS

EPSS: 0.00209