CVE-2026-23008

MEDIUM

Linux kernel - Null Pointer Dereference

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix KMS with 3D on HW version 10 HW version 10 does not have GB Surfaces so there is no backing buffer for surface backed FBs. This would result in a nullptr dereference and crash the driver causing a black screen.

Scores

CVSS v3 5.5
EPSS 0.0002
EPSS Percentile 5.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-476
Status published
Products (10)
linux/Kernel 6.16.0 - 6.18.7linux
Linux/Linux < 6.16
Linux/Linux 6.16
Linux/Linux 6.18.7 - 6.18.*
Linux/Linux 6.19
Linux/Linux 965544150d1cadf0e8f5bb6c13c19697e46e1429 - a91bdd21d5efb3072beefbec13762b7722200c49
Linux/Linux 965544150d1cadf0e8f5bb6c13c19697e46e1429 - d9186faeae6efb7d0841a5e8eb213ff4c7966614
linux/linux_kernel 6.16
linux/linux_kernel 6.19 rc1 (8 CPE variants)
linux/linux_kernel 6.16.1 - 6.18.7
Published Jan 25, 2026
Tracked Since Feb 18, 2026