{
  "affected": [
    {
      "ranges": [
        {
          "events": [
            {
              "introduced": "4e02e0afa95f691dc7cc17538cdd648089a843f0"
            },
            {
              "fixed": "67a654b41cfa73c3b83402c4a01b2689cad5b9bc"
            }
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "type": "GIT"
        }
      ]
    }
  ],
  "database_specific": {
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/93xxx/CVE-2026-93809.json"
  },
  "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amdgpu: flush pending RCU callbacks on module unload\n\nCall rcu_barrier() in module exit to wait for outstanding call_rcu() callbacks\nbefore freeing module text, preventing late callback execution in freed memory.\n\nBUG: unable to handle page fault for address: ffffffffc1d59c40\nPGD 6a12067 P4D 6a12067 PUD 6a14067 PMD 13698b067 PTE 0\nOops: 0010 [#1] SMP NOPTI\nRIP: 0010:0xffffffffc1d59c40\nCode: Unable to access opcode bytes at RIP 0xffffffffc1d59c16.\nRSP: 0018:ffffc900198c0f28 EFLAGS: 00010286\nRAX: ffffffffc1d59c40 RBX: ffff897c7d6b61c0 RCX: ffff88826aff4590\nRDX: ffff8884d8b35490 RSI: ffffc900198c0f30 RDI: ffff88812af67290\nRBP: 000000000000000a (DONE segment entries) R08: 0000000000000000 R09: 0000000000000100\nR10: 0000000000000000 R11: ffffffff82a06100 R12: ffff88811a4e3700\nR13: 0000000000000000 R14: ffff897c7d6b6270 R15: 0000000000000000\nFS:  0000000000000000(0000) GS:ffff897c7d680000(0000) knlGS:0000000000000000\nCS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033\nCR2: ffffffffc1d59c16 CR3: 00000104a980a001 CR4: 0000000002770ee0\nDR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\nDR3: 0000000000000000 DR6: 00000000fffe07f0 DR7: 0000000000000400\nPKRU: 55555554\nCall Trace:\n \u003cIRQ\u003e\n ? rcu_do_batch+0x163/0x450\n ? rcu_core+0x177/0x1c0\n ? __do_softirq+0xc1/0x280\n ? asm_call_irq_on_stack+0xf/0x20\n \u003c/IRQ\u003e\n ? do_softirq_own_stack+0x37/0x50\n ? irq_exit_rcu+0xc4/0x100\n ? sysvec_apic_timer_interrupt+0x36/0x80\n ? asm_sysvec_apic_timer_interrupt+0x12/0x20\n ? cpuidle_enter_state+0xd4/0x360\n ? cpuidle_enter+0x29/0x40\n ? cpuidle_idle_call+0x108/0x1a0\n ? do_idle+0x77/0xf0\n ? cpu_startup_entry+0x19/0x20\n ? secondary_startup_64_no_verify+0xbf/0xcb\n\n(cherry picked from commit feaa5039f6c12acc9aa934c2d45dcd251a12c69f)",
  "id": "CVE-2026-93809",
  "modified": "2026-09-27T03:30:22.848653277Z",
  "published": "2026-09-24T16:02:44.613Z",
  "references": [
    {
      "type": "WEB",
      "url": "https://git.kernel.org/stable/c/67a654b41cfa73c3b83402c4a01b2689cad5b9bc"
    },
    {
      "type": "ADVISORY",
      "url": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/93xxx/CVE-2026-93809.json"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-93809"
    },
    {
      "type": "PACKAGE",
      "url": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"
    }
  ],
  "schema_version": "1.9.0",
  "summary": "drm/amdgpu: flush pending RCU callbacks on module unload"
}