PT-2026-52286 · Linux+1 · Linux Kernel+1

CVE-2026-53190

·

Published

2026-06-08

·

Updated

2026-09-07

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A reference count leak occurs in the virtio gpu dma fence wait() function within the drm/virtio component. The issue arises because dma fence unwrap for each() calls dma fence unwrap first(), which increments the reference count of the fence. While normal loop completion releases this reference via dma fence unwrap next(), an early return triggered by a failure in virtio gpu do fence wait() prevents the cursor->chain reference from being released.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Infinite Loop

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-90722
BDU:2026-14028
CVE-2026-53190
OESA-2026-3204
OPENSUSE-SU-2026:21555-1
SUSE-SU-2026:23066-1
SUSE-SU-2026:23068-1
SUSE-SU-2026:23193-1
SUSE-SU-2026:23194-1
SUSE-SU-2026:23221-1
SUSE-SU-2026:23231-1
SUSE-SU-2026:23237-1
SUSE-SU-2026:23241-1
SUSE-SU-2026:23244-1
SUSE-SU-2026:3130-1
SUSE-SU-2026:3166-1
USN-8726-1
USN-8727-1
USN-8728-1

Affected Products

Linux Kernel
Ubuntu