SB20260720186 - Out-of-bounds read in Linux kernel msm disp driver
Published: July 20, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Out-of-bounds read (CVE-ID: CVE-2026-64039)
CWE-ID: CWE-125 - Out-of-bounds read
CVSSv4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to an out-of-bounds read in msm_disp_state_print_regs and related snapshot dumping logic when processing unaligned DSI register regions. A local user can trigger snapshotting of a specially positioned unaligned region to cause a denial of service.
The issue occurs because some DSI data regions are shifted by 4 bytes, causing the last registers in the region to be handled incorrectly.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/070e40acc59ef7bedba0314f59971ba87fcc8ab0
- https://git.kernel.org/stable/c/0c90ececfad3fc5c4c43a75ece0e2d736ab3def1
- https://git.kernel.org/stable/c/1ef79be774706dddcfcace0331fa7ff32a73c73e
- https://git.kernel.org/stable/c/76824d2467feb1828b745d6add2541918d7be3da
- https://git.kernel.org/stable/c/8fb070cf95847b29ef6cb15ec2c0de2bf4704676
- https://git.kernel.org/stable/c/cdd1aaf0ee962f50810b9aef7928f2313989d55f
- https://git.kernel.org/stable/c/cecd34e046121d788a70b5c8b4f8a88916637953