PatchSiren cyber security CVE debrief
CVE-2026-93175 Linux kernel CVE debrief
A vulnerability in the Linux kernel's drm/amd/display component can lead to a dangling pointer in the CRTC reset function. This occurs when the function frees the old state before allocating a new one, leaving a pointer to already freed memory if the new allocation fails. The issue has been resolved by allocating the new state first. The vulnerability was found by Linux Verification Center (linuxtesting.org) with SVACE. The affected component is used in various Linux kernel versions, and defenders should assess exposure and prioritize patching. The vulnerability can cause system instability or exploitation, potentially leading to denial of service or arbitrary code execution.
- Vendor
- Linux kernel
- Product
- drm/amd/display
- CVSS
- HIGH 7.8
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-09-17
- Original CVE updated
- 2026-09-18
- Advisory published
- 2026-09-17
- Advisory updated
- 2026-09-18
Who should care
Defenders responsible for Linux kernel-based systems, particularly those using the affected drm/amd/display component, should assess exposure and prioritize patching. This includes operators, platform administrators, vulnerability management teams, and security teams. They should review system configurations, update Linux kernel versions as necessary, and monitor system logs for potential exploitation attempts.
Why it matters
A vulnerability in the Linux kernel's drm/amd/display component can lead to a dangling pointer in the CRTC reset function, potentially causing system instability or exploitation. Defenders should prioritize verifying and applying patches, particularly for systems using affected Linux kernel versions.
- Potential system crashes or instability due to dangling pointer
- Increased risk of exploitation leading to denial of service or arbitrary code execution
- Need for verification of Linux kernel versions and patch application
- Potential impact on system availability and reliability
Technical summary
The vulnerability occurs in the amdgpu_dm_crtc_reset_state() function, which frees the old state before allocating a new one. If the new allocation fails, the function returns without updating the state pointer, leaving a dangling pointer to already freed memory. The issue has been resolved by allocating the new state first. The affected component is used in various Linux kernel versions, and defenders should assess exposure and prioritize patching. The vulnerability can cause system instability or exploitation, potentially leading to denial of service or arbitrary code execution.
Defensive priority
Defenders should prioritize verifying and applying patches for this vulnerability, particularly for systems using the affected Linux kernel versions.
Recommended defensive actions
- Verify and apply patches for this vulnerability
- Review system configurations and update Linux kernel versions as necessary
- Monitor system logs for potential exploitation attempts
- Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up
- Review the supplied official advisory or CVE record to validate affected scope, severity, and vendor guidance
- Plan vendor-supported updates or mitigations through normal change control where exposure is confirmed
- Track exceptions, retest remediated assets, and close the item only after evidence is documented
Evidence notes
The vulnerability was found by Linux Verification Center (linuxtesting.org) with SVACE. The issue is resolved in the Linux kernel. The affected component is used in various Linux kernel versions. Defenders should verify and apply patches, review system configurations, and update Linux kernel versions as necessary. The vulnerability can cause system instability or exploitation, potentially leading to denial of service or arbitrary code execution.
Sources and references
Verified primary and authoritative sources
-
CVE-2026-93175 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2026-93175
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2026-93175 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2026-93175
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source reference
Unverified legacy reference
URL: https://git.kernel.org/stable/c/0aeed866cb938943908c3ba46422128e49d2d080
416baaa9-dc9f-4396-8d5f-8c081fb06d67
-
Source reference
Unverified legacy reference
URL: https://git.kernel.org/stable/c/32bd68edbc6cbcfac0e4033b64f0bcadbf0efef5
416baaa9-dc9f-4396-8d5f-8c081fb06d67
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.