drm/i915/bios: range check LFP Data Block panel_type2
Summary
| CVE | CVE-2026-68247 |
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-08-10 13:20:13 UTC |
| Updated | 2026-08-10 13:20:13 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved:
drm/i915/bios: range check LFP Data Block panel_type2
While the panel_type from LFP Data Block is range checked, panel_type2
is not. Add a few helpers for range checking, and use them to not only
check panel_type2, but also improve clarity and correctness in the panel
type selection.
Discovered using AI-assisted static analysis confirmed by Intel Product
Security.
v2:
- Fix commit message typo (Michał)
- Add is_panel_type_pnp() (Ville)
(cherry picked from commit c9ebe5d2f25729d6cfbbb1235d640bf67f9275df) |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|
| CNA |
Linux |
Linux |
affected 6434cf630086eea2d091f122f5802582a05d9d1c e7b5694645b03e80830dc141b59fc65aac693c70 git |
Not specified |
| CNA |
Linux |
Linux |
affected 6434cf630086eea2d091f122f5802582a05d9d1c 8b2da44446f9dce2ae50fee78bac2734d4277143 git |
Not specified |
| CNA |
Linux |
Linux |
affected 6434cf630086eea2d091f122f5802582a05d9d1c 8887b94d2fc93071bf6ff09c39d474510e6f582f git |
Not specified |
| CNA |
Linux |
Linux |
affected 6434cf630086eea2d091f122f5802582a05d9d1c 2084503f2d087bf956198e7f6eb25b03a7049cb2 git |
Not specified |
| CNA |
Linux |
Linux |
affected 6.0 |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.0 semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.12.101 6.12.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.18.42 6.18.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.1.6 7.1.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.2-rc2 * original_commit_for_fix |
Not specified |
References
| Reference | Source | Link | Tags |
|---|
| git.kernel.org/stable/c/8b2da44446f9dce2ae50fee78bac2734d4277143 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/2084503f2d087bf956198e7f6eb25b03a7049cb2 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/e7b5694645b03e80830dc141b59fc65aac693c70 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/8887b94d2fc93071bf6ff09c39d474510e6f582f |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.