What is CVE-2026-68446?
A vulnerability has been resolved in the Linux kernel's VMware graphics driver (drm/vmwgfx) where user-supplied array size (`array_size`) is not properly validated against Shader Model limits. This can affect systems using VMware virtual machines. Apply the patch or update to the fixed kernel version.
Azərbaycanca: Linux nüvəsinin VMware qrafik sürücüsündə (drm/vmwgfx) istifadəçi tərəfindən təqdim edilən massiv ölçüsü (`array_size`) düzgün yoxlanılmadığı üçün yaddaş təhlükəsizliyi zəifliyi aşkar edilib. Bu, VMware virtual maşınlarından istifadə edən sistemlərə təsir edə bilər. Yamaq tətbiq olunmalı və ya təsirlənmiş kernel versiyası yenilənməlidir.
Related CVEs
link basis: same weakness class CWE-20
FAQ2
Which component in Linux systems running via VMware is affected by CVE-2026-68446?
This vulnerability affects the VMware graphics driver (drm/vmwgfx) in the Linux kernel.
Which user-supplied parameter is not properly validated, causing the security issue in CVE-2026-68446?
The user-supplied array size (`array_size`) is not properly validated against Shader Model limits, causing the vulnerability.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.