PT-2026-72905 · Linux · Linux Kernel

CVE-2026-74453

·

Published

2026-08-15

·

Updated

2026-08-18

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the drm/vc4 component where the binner BO, a 16MB buffer divided into 512KB slots, is recycled without being cleared between jobs. Each slot contains the Tile State Data Array (TSDA), which is used for per-tile bookkeeping by the PTB (Primitive Tiling Binning) hardware. Because the TSDA is not zeroed, the PTB may process stale data from previous jobs, leading to the creation of invalid command streams, primitive streams, and branches, which can result in GPU hangs. Additionally, the tile count is only checked to ensure it is non-zero, potentially allowing a tile state array to exceed the available slot size.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-95991
CVE-2026-74453

Affected Products

Linux Kernel