SB20260812260 - Improper handling of exceptional conditions in Linux kernel drm nouveau driver
Published: August 12, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Improper handling of exceptional conditions (CVE-ID: CVE-2026-68271)
CWE-ID: CWE-755 - Improper Handling of Exceptional Conditions
CVSSv4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper exception handling in nouveau_uvmm_vm_bind_ucopy() and nouveau_exec_ucopy() when handling failed u_memcpya() allocations during user copy operations. A local user can trigger an allocation failure to cause a denial of service.
The issue can lead to a kernel oops from dereferencing an ERR_PTR value, and a different failure path can also result in a memory leak.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/2473ac314387a5def7244eb6d6a345934ed140bf
- https://git.kernel.org/stable/c/4e109faa9ea2b6c04cc5a99e76db3126575a59d1
- https://git.kernel.org/stable/c/ab99ead646b1b833ecd57fe577a2816f2e848167
- https://git.kernel.org/stable/c/e15c25c7972d38a9f6bf8c3f7f29179a67263eba
- https://git.kernel.org/stable/c/ebbaf64d2635d1e78196c067fa8fa582a7dc17f7