PT-2026-52238 · Linux+1 · Linux Kernel+1

CVE-2026-53142

·

Published

2026-06-10

·

Updated

2026-09-07

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A NULL pointer dereference occurs in the xe driver during suspend or shutdown when no display is present. The driver uses the xe->info.probe display variable to track display hardware availability. If the display is disabled via fuses, which is detected during the intel display device info runtime init() function, the driver may execute for each intel crtc() on uninitialized mode configuration within the xe display flush cleanup work() function, leading to a system crash (oops).
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use of Uninitialized Resource

Access of Uninitialized Pointer

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-14004
CVE-2026-53142
USN-8726-1
USN-8727-1
USN-8728-1

Affected Products

Linux Kernel
Ubuntu