What is CVE-2026-74443?
A vulnerability in the Linux kernel's `vmwgfx` driver allows memory corruption because `vmw_cmd_dma` does not properly validate the DMA command body size against the suffix pointer. This affects systems using VMware virtual graphics devices. Administrators should apply the latest kernel patches to mitigate the issue.
Azərbaycanca: Linux kernel-in `vmwgfx` sürücüsündə `vmw_cmd_dma` funksiyası DMA əmrinin ölçüsünü düzgün yoxlamadığı üçün yaddaş pozulması baş verə bilər. Bu boşluq VMware virtual qrafik cihazlarından istifadə edən sistemləri təsirləyir. Problemi aradan qaldırmaq üçün kernel yenilənməlidir.
Related CVEs
link basis: same weakness class CWE-119; shared vendor: Linux
FAQ2
Which kernel component does CVE-2026-74443 affect?
It affects the `vmw_cmd_dma` function in the Linux kernel's `vmwgfx` driver.
What should be done to mitigate CVE-2026-74443?
Administrators should apply the latest kernel patches.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.