CVE-2026-68253

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/08/2026
Last modified:
17/08/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> drm/i915/hdcp: check streams[] bounds before overflow<br /> <br /> The data-&gt;streams[] overflow check is done after the buffer overflow has<br /> already happened. Move the overflow check before the write.<br /> <br /> Side note, emitting a warning splat with a backtrace might be overkill<br /> here, but prefer not changing the behaviour other than not doing the<br /> overrun.<br /> <br /> Discovered using AI-assisted static analysis confirmed by Intel Product<br /> Security.<br /> <br /> (cherry picked from commit 9284ab3b6e776c315883ac2611283d263c9460fd)