CVE-2026-64245
Last modified
CVE-2026-64245 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: fbdev: modedb: fix a possible UAF in fb_find_mode() If mode_option is NULL, it is assigned from mode_option_buf: if (!mode_option) { fb_get_options(NULL, &mode_option_buf); mode_option = mode_option_buf; } Later, name is assigned from mode_option: const char *name = mode_option; However, mode_option_buf is freed before name is no longer used: kfree(mode_option_buf); while name is still accessed by: if ((name_matches(db[i], name, namelen) || Since name aliases mode_option_buf, this may result in a use-after-free. Fix this by extending the lifetime of mode_option_buf until the end of the function by using scope-based resource management for cleanup.. EPSS estimates a 0.16% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: fbdev: modedb: fix a possible UAF in fb_find_mode() If mode_option is NULL, it is assigned from mode_option_buf: if (!mode_option) { fb_get_options(NULL, &mode_option_buf); mode_option = mode_option_buf; } Later, name is assigned from mode_option: const char *name = mode_option; However, mode_option_buf is freed before name is no longer used: kfree(mode_option_buf); while name is still accessed by: if ((name_matches(db[i], name, namelen) || Since name aliases mode_option_buf, this may result in a use-after-free. Fix this by extending the lifetime of mode_option_buf until the end of the function by using scope-based resource management for cleanup.
Metrics
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 089d924d03d5c17b05d02992f57671ccfba1c4f0, < c7dc382439f7b019e207055b52e9cec051d42fa9; >= 089d924d03d5c17b05d02992f57671ccfba1c4f0, < f906347d75c7fc377041c6d3c535d0f08846aada; >= 089d924d03d5c17b05d02992f57671ccfba1c4f0, < 4d418cf8daf57e454b4d855bf9b2419fd8e6a540; >= 089d924d03d5c17b05d02992f57671ccfba1c4f0, < 13b6f0cdd5cd5e60f682ec43134ab0e2024bd356; >= 089d924d03d5c17b05d02992f57671ccfba1c4f0, < 85b6256469cebdac395e7447147e06b2e151014f |
| Linux | Linux | 6.4 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-64245?
How severe is CVE-2026-64245?
How do I fix CVE-2026-64245?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-6424Use-after-free vulnerability in ESET Linux products potentia…6.7
- CVE-2026-64240In the Linux kernel, the following vulnerability has been re…
- CVE-2026-64241In the Linux kernel, the following vulnerability has been re…
- CVE-2026-64242In the Linux kernel, the following vulnerability has been re…
- CVE-2026-64243In the Linux kernel, the following vulnerability has been re…7.1
- CVE-2026-64244In the Linux kernel, the following vulnerability has been re…
- CVE-2026-64246In the Linux kernel, the following vulnerability has been re…
- CVE-2026-64247In the Linux kernel, the following vulnerability has been re…8.4
- CVE-2026-64248In the Linux kernel, the following vulnerability has been re…
- CVE-2026-64249In the Linux kernel, the following vulnerability has been re…
- CVE-2026-64250In the Linux kernel, the following vulnerability has been re…5.5
- CVE-2026-64251In the Linux kernel, the following vulnerability has been re…7.8
Are you affected by CVE-2026-64245?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
