{"cve":{"cve_id":"CVE-2026-53139","is_kev":false,"kev_date_added":null,"kev_vendor_project":null,"kev_product":null,"kev_vulnerability_name":null,"kev_short_description":null,"kev_required_action":null,"kev_due_date":null,"kev_known_ransomware":null,"kev_notes":null,"kev_cwes":null,"epss_score":null,"epss_percentile":null,"epss_as_of":null,"description":"In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/v3d: Skip CSD when it has zeroed workgroups\n\nA compute shader dispatch encodes its workgroup counts in the CFG0..CFG2\nregisters. Kicking off a dispatch with a zero count in any of the three\ndimensions is invalid. First, the hardware will process 0 as 65536,\nwhile the user-space driver exposes a maximum of 65535. Over that, a\nsubmission with a zeroed workgroup dimension should be a no-op.\n\nThese zeroed counts can reach the dispatch path through an indirect CSD\njob, whose workgroup counts are only known once the indirect buffer is\nread and may legitimately be zero, but such scenario should only result in\na no-op.\n\nOverwrite the indirect CSD job workgroup counts with the indirect BO\nones, even if they are zeroed, and don't submit the job to the hardware\nwhen any of the workgroup counts is zero, so the job completes immediately\ninstead of running the shader.","published_at":"2026-06-25T08:38:27.738000Z","last_modified_at":null,"cvss_v3_score":null,"cvss_v3_vector":null,"cvss_v3_severity":null,"cvss_v4_score":null,"cvss_v4_vector":null,"cvss_v4_severity":null,"ssvc_decision":null,"ssvc_exploitation":null,"ssvc_automatable":null,"ssvc_technical_impact":null,"cwes":null,"nvd_references":["https://git.kernel.org/stable/c/9655b56b6de918e1c22b92f3880ae41b052cbd00","https://git.kernel.org/stable/c/11e6432836394e00d39e468cd514f9ddb66f1e49","https://git.kernel.org/stable/c/7f93fad5ea0affc9e1505dd0f7596c0fdb496213"],"vuln_status":null,"trending_score":null,"is_trending":false,"has_trended":false,"trended_number_one":false,"trending_peak_score":null,"trending_peak_rank":null,"started_trending_at":null,"trended_number_one_at":null,"summary_generated":null,"summary_generated_at":null,"summary_model":null,"created_at":"2026-06-28T17:55:28.590503Z","updated_at":"2026-06-28T23:30:50.753831Z"},"effective_severity":null,"badges":[],"impact_analysis":[],"cvss_v3_decoded":{"version":null,"metrics":[]},"cvss_v4_decoded":{"version":null,"metrics":[]},"affected":[{"vendor_slug":"linux","vendor_name":"Linux","product_slug":"linux","product_name":"Linux","version_start":"6.18.36","version_start_inclusive":true,"version_end":"6.18.*","version_end_inclusive":true,"cpe23_uri":"cve5:linux:linux:6.18.36:6.18.*"},{"vendor_slug":"linux","vendor_name":"Linux","product_slug":"linux","product_name":"Linux","version_start":"d223f98f02099b002903b9b22b56febae16ef80d","version_start_inclusive":true,"version_end":"9655b56b6de918e1c22b92f3880ae41b052cbd00","version_end_inclusive":false,"cpe23_uri":"cve5:linux:linux:d223f98f02099b002903b9b22b56febae16ef80d:9655b56b6de918e1c22b92f3880ae41b052cbd00"},{"vendor_slug":"linux","vendor_name":"Linux","product_slug":"linux","product_name":"Linux","version_start":"d223f98f02099b002903b9b22b56febae16ef80d","version_start_inclusive":true,"version_end":"11e6432836394e00d39e468cd514f9ddb66f1e49","version_end_inclusive":false,"cpe23_uri":"cve5:linux:linux:d223f98f02099b002903b9b22b56febae16ef80d:11e6432836394e00d39e468cd514f9ddb66f1e49"},{"vendor_slug":"linux","vendor_name":"Linux","product_slug":"linux","product_name":"Linux","version_start":"d223f98f02099b002903b9b22b56febae16ef80d","version_start_inclusive":true,"version_end":"7f93fad5ea0affc9e1505dd0f7596c0fdb496213","version_end_inclusive":false,"cpe23_uri":"cve5:linux:linux:d223f98f02099b002903b9b22b56febae16ef80d:7f93fad5ea0affc9e1505dd0f7596c0fdb496213"},{"vendor_slug":"linux","vendor_name":"Linux","product_slug":"linux","product_name":"Linux","version_start":"5.3","version_start_inclusive":true,"version_end":"5.3","version_end_inclusive":true,"cpe23_uri":"cve5:linux:linux:5.3:5.3"},{"vendor_slug":"linux","vendor_name":"Linux","product_slug":"linux","product_name":"Linux","version_start":"0","version_start_inclusive":true,"version_end":"5.3","version_end_inclusive":false,"cpe23_uri":"cve5:linux:linux:0:5.3"},{"vendor_slug":"linux","vendor_name":"Linux","product_slug":"linux","product_name":"Linux","version_start":"7.0.13","version_start_inclusive":true,"version_end":"7.0.*","version_end_inclusive":true,"cpe23_uri":"cve5:linux:linux:7.0.13:7.0.*"},{"vendor_slug":"linux","vendor_name":"Linux","product_slug":"linux","product_name":"Linux","version_start":"7.1","version_start_inclusive":true,"version_end":"*","version_end_inclusive":true,"cpe23_uri":"cve5:linux:linux:7.1:*"}],"exploit_refs":[],"news":[],"references":[{"url":"https://git.kernel.org/stable/c/9655b56b6de918e1c22b92f3880ae41b052cbd00","source_type":"MISC","tags":[]},{"url":"https://git.kernel.org/stable/c/11e6432836394e00d39e468cd514f9ddb66f1e49","source_type":"MISC","tags":[]},{"url":"https://git.kernel.org/stable/c/7f93fad5ea0affc9e1505dd0f7596c0fdb496213","source_type":"MISC","tags":[]}],"timeline":[{"type":"published","at":"2026-06-25T08:38:27.738000Z","label":"CVE published","source":null}]}