CVE-2026-98270

medium

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: check ras and obj before dereference nbio_v7_9_handle_ras_controller_intr_no_bifring() dereferences ras and obj without checking either for NULL. Both amdgpu_ras_get_context() and amdgpu_ras_find_obj() can return NULL, e.g. during the window between adev->nbio.ras being set (early in amdgpu_ras_init(), by design, to enable the fatal-error interrupt as soon as possible) and the PCIE_BIF ras object actually being created in RAS late_init. Any interrupt in that window crashes in hard-IRQ context. This is analogous to commit d190b459b2a4 ("drm/amdgpu: the warning dereferencing obj for nbio_v7_4"), which fixed the same issue in the nbio_v7_4 handler. Found by Linux Verification Center (linuxtesting.org) with SVACE. (cherry picked from commit c7071767a50a32ed727cf800ac84372429e3b4b3)

References

https://git.kernel.org/stable/c/fc5f845a291fc8175e6857cd6ad042818da192e8

https://git.kernel.org/stable/c/b7c7f07a40037514f8e890aa00f8d7b196d680cf

https://git.kernel.org/stable/c/723d4dc628d764b19cf9efca14b82cca5ff020c9

https://git.kernel.org/stable/c/37583946d8751f8e285c467d770ac0b609b82a23

https://git.kernel.org/stable/c/315c22712715491f0dfafdaf2c2b437540e68702

https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-93198

Details

Source: Mitre, NVD

Published: 2026-10-06

Updated: 2026-10-06

Risk Information

CVSS v2

Base Score: 4.9

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00175