SB20260727368 - Out-of-bounds read in Linux kernel dc core driver
Published: July 27, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Out-of-bounds read (CVE-ID: CVE-2026-64219)
CWE-ID: CWE-125 - Out-of-bounds read
CVSSv4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to an out-of-bounds read in dc->links[] access within dc_process_dmub_aux_transfer_async() when handling a link_index value without bounds checking. A local user can supply an invalid link_index to cause a denial of service.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/16a5fa57565afb6bf37e18129921c270c93d8e2b
- https://git.kernel.org/stable/c/1c8c6e912f2945b2a3e669afca6b52174b88e86e
- https://git.kernel.org/stable/c/1ecde19bfce6535bffddad1139ff466b6d401b8e
- https://git.kernel.org/stable/c/3265f3ed373fb8048be713aadcdf702579a0e53d
- https://git.kernel.org/stable/c/6c92f6d9600efa3ef0d9e560a2b52776d9803c29
- https://git.kernel.org/stable/c/90c398e822ca76e40548df0c061dd4f93ea92d71
- https://git.kernel.org/stable/c/d6590e3f766e3111dd1beaf88b9384d117acfa6b