CVE-2026-68241
Last modified
CVE-2026-68241 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: drm/i915/mst: limit DP MST ESI service loop The loop in intel_dp_check_mst_status() keeps servicing interrupts originating from the sink without bound. Add an upper bound to the new interrupts occurring during interrupt processing to not get stuck on potentially stuck sink devices.
Description
In the Linux kernel, the following vulnerability has been resolved: drm/i915/mst: limit DP MST ESI service loop The loop in intel_dp_check_mst_status() keeps servicing interrupts originating from the sink without bound. Add an upper bound to the new interrupts occurring during interrupt processing to not get stuck on potentially stuck sink devices. Use arbitrary 32 tries to clear incoming interrupts in one go. Discovered using AI-assisted static analysis confirmed by Intel Product Security. Note: The condition likely pre-dates the commit in the Fixes: tag, but this is about as far back as a backport has any chance of succeeding. Before that, the retry had a goto. (cherry picked from commit b4ea5272133059acb493cc36599071a9e852ec2e)
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 3c0ec2c2d5948356a22c8f1c08a8087b12a303e7, < e3bcd3bf7eeca9570b9fa0b2f8a602c7bcc6b0d0; >= 3c0ec2c2d5948356a22c8f1c08a8087b12a303e7, < 9061fbf2230b6fcef042a6f637beae57c2fc93a5; >= 3c0ec2c2d5948356a22c8f1c08a8087b12a303e7, < 005771c18c5b2c98cb4e7517661aea460990fd3f |
| Linux | Linux | 5.8 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-68241?
How severe is CVE-2026-68241?
How do I fix CVE-2026-68241?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-68236In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68237In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68238In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68239In the Linux kernel, the following vulnerability has been re…
- CVE-2026-6824A stored cross-site scripting (XSS) vulnerability exists in …8.4
- CVE-2026-68240In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68242In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68243In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68244In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68245In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68246In the Linux kernel, the following vulnerability has been re…
- CVE-2026-68247In the Linux kernel, the following vulnerability has been re…
Are you affected by CVE-2026-68241?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
