CVE-2026-93248
Last modified
CVE-2026-93248 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: drm/xe: don't WARN on kernel job timeout when device already wedged igt@xe_wedged@wedged-at-any-timeout wedges the device in mode 2 (UPON_ANY_HANG_NO_RESET) and then rebinds the driver. During unbind, a GSC proxy kernel submission can still time out; with the device wedged and the GuC CT stopped it can never complete, so its kernel job times out. Tile0: GT1: Kernel-submitted job timed out WARNING: drivers/gpu/drm/xe/xe_guc_submit.c:... at guc_exec_queue_timedout_job() Workqueue: gt-ordered-wq drm_sched_job_timedout Killed queues skip guc_submit_hint_wedged(), leaving 'wedged' false even though the device is already wedged.
Description
In the Linux kernel, the following vulnerability has been resolved: drm/xe: don't WARN on kernel job timeout when device already wedged igt@xe_wedged@wedged-at-any-timeout wedges the device in mode 2 (UPON_ANY_HANG_NO_RESET) and then rebinds the driver. During unbind, a GSC proxy kernel submission can still time out; with the device wedged and the GuC CT stopped it can never complete, so its kernel job times out. Tile0: GT1: Kernel-submitted job timed out WARNING: drivers/gpu/drm/xe/xe_guc_submit.c:... at guc_exec_queue_timedout_job() Workqueue: gt-ordered-wq drm_sched_job_timedout Killed queues skip guc_submit_hint_wedged(), leaving 'wedged' false even though the device is already wedged. The timeout handler then treats the kernel queue timeout as unexpected and taints the kernel. Honour an already-wedged device even for killed queues so the expected teardown timeout no longer trips the WARN. (cherry picked from commit a1c1dbd0f047bb05de6aaf6abe9103031179bf19)
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 5a2f117a80c207372513ca8964eeb178874f4990, < 24d81b72992006f9c390f1fc85c7f991e6d06fd6; >= 5a2f117a80c207372513ca8964eeb178874f4990, < 13087ad7817e6e5f210064518bfc4d6d58a9c2f3 |
| Linux | Linux | 6.17 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-93248?
How severe is CVE-2026-93248?
How do I fix CVE-2026-93248?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-93242In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93243In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93244In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93245In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93246In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93247In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93249In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93250In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93251In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93252In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93253In the Linux kernel, the following vulnerability has been re…
- CVE-2026-93254In the Linux kernel, the following vulnerability has been re…
Are you affected by CVE-2026-93248?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
