Use-after-free in Linux kernel - CVE-2026-68273
Published: August 12, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to use-after-free and NULL pointer dereference in the amdgpu context pstate handling code when initializing or finalizing GPU contexts while stable pstate state changes are processed. A local user can create and tear down crafted contexts to cause a denial of service.
The issue arises because context pstate ownership transitions were not consistently protected by the stable_pstate_ctx_lock, and sysfs-triggered state changes can race with context handling.
Affected software
Debian Linux
Red Hat Enterprise Linux for Real Time
Red Hat Enterprise Linux for Real Time for NFV
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Red Hat CodeReady Linux Builder for x86_64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for ARM 64
kernel (Red Hat package)
kernel-rt (Red Hat package)
linux (Debian package)
How to mitigate CVE-2026-68273
kernel (Red Hat package) - addressed in versions 4.18.0-553.169.1.el8_10, 5.14.0-687.52.1.el9_8
kernel-rt (Red Hat package) - update to 4.18.0-553.169.1.rt7.510.el8_10
linux (Debian package) - update to 6.12.105-1