CVE-2026-68446

Source
https://cve.org/CVERecord?id=CVE-2026-68446
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68446.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-68446
Downstream
Published
2026-08-12T00:07:37Z
Modified
2026-08-21T03:30:41Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
drm/vmwgfx: Validate vmw_surface_metadata::array_size
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/vmwgfx: Validate vmw_surface_metadata::array_size

This field comes from userspace and should be validated against specific limits depending on which Shader Model (SM) is available.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68446.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
504901dbb0b565fcbe466b0c56f3131586df5afd
Fixed
e949adf2d42678fb391a41db277e2fcb12090566
Fixed
0403cec2aff8037bc246cf9a0831eb169ddcd9df
Fixed
aded8463466ede7a7fbd1bbf821756c67c83e89b
Fixed
5ff94e1279176b539d451e3e754fdcbd1a8d520a
Fixed
71779fe8bf403a9b3e28dc59229fa556db32d35d
Fixed
b1379f0c42b88cb60b9f3757eb5d1e73ad460ed8
Fixed
6910ccaf41678f7761ba2e57d72b77d056320b4d
Fixed
a4f55260f7f7d4dc4d0ee55063dfb0c457b77991

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68446.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.7.0
Fixed
5.10.265
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.216
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.183
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.148
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.101
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.42
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68446.json"