CVE-2026-68248

medium

Description

In the Linux kernel, the following vulnerability has been resolved: drm/i915: Return NULL on error in active_instance Avoid returning &node->base when node is NULL due to OOM during GFP_ATOMIC allocation. Discovered using AI-assisted static analysis confirmed by Intel Product Security. (cherry picked from commit 6029bc064f0b1bac184203a50fbaaf070fa18832)

References

https://git.kernel.org/stable/c/cbec6a57959ab503e3ad4ad6edd51efb585dce92

https://git.kernel.org/stable/c/b238d86e7f43afde8e830ef5b8d89ffedbbc7613

https://git.kernel.org/stable/c/58b7e63ca0cd964190957ddd169c899256acaee9

https://git.kernel.org/stable/c/32c1a2afa90dd07df931f0b12578de1dbb751f0c

https://git.kernel.org/stable/c/1e33f0de5fdcd09e51fdec1e5822448970b6420f

Details

Source: Mitre, NVD

Published: 2026-08-10

Updated: 2026-08-10

Risk Information

CVSS v2

Base Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

Severity: High

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium