CVE-2026-68256

Unknown

Last modified

CVE-2026-68256 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks prev_sink reference prev_sink is unconditionally retained via dc_sink_retain at function entry, but the DP alt mode timeout path inside SIGNAL_TYPE_DISPLAY_PORT returns false without releasing prev_sink. All other return paths in the function correctly call dc_sink_release(prev_sink), making this the only missing cleanup. (cherry picked from commit 45510cf662dcf46b5d8926d454f338809f107b9d).

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks prev_sink reference prev_sink is unconditionally retained via dc_sink_retain at function entry, but the DP alt mode timeout path inside SIGNAL_TYPE_DISPLAY_PORT returns false without releasing prev_sink. All other return paths in the function correctly call dc_sink_release(prev_sink), making this the only missing cleanup. (cherry picked from commit 45510cf662dcf46b5d8926d454f338809f107b9d)

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 54618888d1ea7a26f8bccfb89e3c2420350c8047, < f9922828a4ebd26286fbe0286cc61695e7d9b07b; >= 54618888d1ea7a26f8bccfb89e3c2420350c8047, < a59e493567d18ef3858be9368acd132a01ebfa09; >= 54618888d1ea7a26f8bccfb89e3c2420350c8047, < 4ee77643e6194f2deb62fe62f04396f9825e27d8; >= 54618888d1ea7a26f8bccfb89e3c2420350c8047, < 58ea24dd96848626039296e9e8510270ec8dc4bf; >= 54618888d1ea7a26f8bccfb89e3c2420350c8047, < a6e14b976be48eebd8769cb5b883a6af7fc5ade1
LinuxLinux6.3

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-68256?
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: detect_link_and_local_sink: DP alt mode timeout path leaks prev_sink reference prev_sink is unconditionally retained via dc_sink_retain at function entry, but the DP alt mode timeout path inside SIGNAL_TYPE_DISPLAY_PORT returns false without releasing prev_sink. All other return paths in the function correctly call dc_sink_release(prev_sink), making this the only missing cleanup. (cherry picked from commit 45510cf662dcf46b5d8926d454f338809f107b9d)
How severe is CVE-2026-68256?
Severity scoring for CVE-2026-68256 is pending analysis.
How do I fix CVE-2026-68256?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-68256?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST