drm/i915/hdcp: check streams[] bounds before overflow
Summary
| CVE | CVE-2026-68253 |
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-08-10 13:20:13 UTC |
| Updated | 2026-08-10 13:20:13 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved:
drm/i915/hdcp: check streams[] bounds before overflow
The data->streams[] overflow check is done after the buffer overflow has
already happened. Move the overflow check before the write.
Side note, emitting a warning splat with a backtrace might be overkill
here, but prefer not changing the behaviour other than not doing the
overrun.
Discovered using AI-assisted static analysis confirmed by Intel Product
Security.
(cherry picked from commit 9284ab3b6e776c315883ac2611283d263c9460fd) |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|
| CNA |
Linux |
Linux |
affected e03187e12cae57c09b521b6f7dd7c7f9aa2b62e9 84351f12390349ba010920fc247e1a0b12e41eb3 git |
Not specified |
| CNA |
Linux |
Linux |
affected e03187e12cae57c09b521b6f7dd7c7f9aa2b62e9 2106fb490b2c6003e23ad6ff36ce823a2170e138 git |
Not specified |
| CNA |
Linux |
Linux |
affected e03187e12cae57c09b521b6f7dd7c7f9aa2b62e9 3d2ef8d389495e7889c6062d8bddc46d2a5fbdef git |
Not specified |
| CNA |
Linux |
Linux |
affected e03187e12cae57c09b521b6f7dd7c7f9aa2b62e9 984085c5b53572e2e03fd5fc4817e86ef1effc6e git |
Not specified |
| CNA |
Linux |
Linux |
affected e03187e12cae57c09b521b6f7dd7c7f9aa2b62e9 bbb15a6b042d02e5508a02b4847e02d2579ee7bc git |
Not specified |
| CNA |
Linux |
Linux |
affected 5.12 |
Not specified |
| CNA |
Linux |
Linux |
unaffected 5.12 semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.6.151 6.6.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.12.103 6.12.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.18.42 6.18.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.1.6 7.1.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.2-rc2 * original_commit_for_fix |
Not specified |
References
| Reference | Source | Link | Tags |
|---|
| git.kernel.org/stable/c/3d2ef8d389495e7889c6062d8bddc46d2a5fbdef |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/2106fb490b2c6003e23ad6ff36ce823a2170e138 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/84351f12390349ba010920fc247e1a0b12e41eb3 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/984085c5b53572e2e03fd5fc4817e86ef1effc6e |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/bbb15a6b042d02e5508a02b4847e02d2579ee7bc |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.