AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-68253

HIGH · CVSS 7.8 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-08-10 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

The vulnerability in the Linux kernel affects the Intel graphics driver, specifically in the handling of the `data->streams[]` array, where an overflow check occurs after a buffer overflow has already taken place. This flaw could potentially lead to memory corruption, which may allow for arbitrary code execution or system crashes. Organizations utilizing Linux systems with Intel graphics should prioritize addressing this vulnerability to mitigate potential security risks.

CVE
CVE-2026-68253
Severity
HIGH
CVSS
7.8
EPSS
0.14%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: drm/i915/hdcp: check streams[] bounds before overflow The data->streams[] overflow check is done after the buffer overflow has already happened. Move the overflow check before the write. Side note, emitting a warning splat with a backtrace might be overkill here, but prefer not changing the behaviour other than not doing the overrun. Discovered using AI-assisted static analysis confirmed by Intel Product Security. (cherry picked from commit 9284ab3b6e776c315883ac2611283d263c9460fd)