Description
In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu/pm: fix SmartShift bias sysfs store PM refcount on parse error

Return the parse error before acquiring PM access.
Published: 2026-09-24
Score: n/a
EPSS: n/a
KEV: No
Impact: Potential kernel instability via incorrect reference count handling
Action: Assess Impact
AI Analysis

Impact

A flaw in the amdgpu driver causes the SmartShift bias sysfs store routine to increase a power‑management reference count on a parse error and then proceed with PM access operations. Returning the error before acquiring PM access prevents the erroneous refcount increment and avoids the subsequent resource misuse. The bug could lead to a kernel panic or other destabilizing behavior if triggered, but it does not provide a direct route to bypass authentication, elevate privileges, or exfiltrate data.

Affected Systems

The vulnerability affects any system running the Linux kernel that includes the amdgpu DRM driver. No specific kernel version is listed, but the issue was fixed in a later commit of the amdgpu subsystem. Systems with AMD graphics hardware that expose the SmartShift bias sysfs attribute are the only targets.

Risk and Exploitability

No CVSS score is published and the EPSS score is not available, so the baseline severity cannot be quantified. The modification is limited to privileged code paths that an attacker would need local root access to invoke, either by writing to the sysfs attribute or by exploiting a separate local privilege escalation. Because the commit fixes the bug by changing the control flow, the remaining attack surface is minimal. The CVE is not listed in the CISA KEV catalog, indicating that no widespread exploitation has been observed.

Generated by OpenCVE AI on September 25, 2026 at 04:38 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the Linux kernel to a version that includes the amdgpu SmartShift bias sysfs bug fix using your distribution’s package manager or by compiling the latest stable kernel.
  • Reboot the machine to load the updated kernel and drivers.
  • Restrict access to the SmartShift bias sysfs interface by setting appropriate file permissions or disabling the entry if it is not required for your workload.

Generated by OpenCVE AI on September 25, 2026 at 04:38 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 25 Sep 2026 05:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-674

Thu, 24 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/pm: fix SmartShift bias sysfs store PM refcount on parse error Return the parse error before acquiring PM access.
Title drm/amdgpu/pm: fix SmartShift bias sysfs store PM refcount on parse error
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-24T16:03:39.074Z

Reserved: 2026-09-24T14:53:16.868Z

Link: CVE-2026-97426

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-24T17:17:20.570

Modified: 2026-09-24T17:17:20.570

Link: CVE-2026-97426

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-25T04:45:16Z

Weaknesses