In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check for tg ops in dce110_set_avmute Some older DCE timing… (CVE-2026-74732)
Description
A vulnerability in the Linux kernel's AMD display driver (drm/amd/display) was resolved by adding a check for timing generator operations in the dce110_set_avmute function. Older DCE timing generators lack the is_tg_enabled operation, and calling it unconditionally caused a NULL pointer dereference on Southern Islands dGPUs when turning off the display via HDMI.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The vulnerability involves the drm/amd/display component of the Linux kernel where the dce110_set_avmute function calls is_tg_enabled unconditionally on timing generators. Some older DCE timing generators do not implement this operation, leading to a NULL pointer dereference on Southern Islands discrete GPUs during HDMI display shutdown. The fix involved adding checks to ensure the timing generator and required operations exist before waiting for AV mute frames, preventing the NULL pointer dereference.
Potential Impact
This vulnerability can cause a NULL pointer dereference leading to a kernel crash or denial of service when turning off the display over HDMI on affected hardware (Southern Islands dGPUs). There is no indication of code execution or privilege escalation from the provided data.
Mitigation Recommendations
A fix has been applied in the Linux kernel source code to check for the presence of timing generator operations before calling them. Users should update their Linux kernel to a version that includes this fix. Patch status is not explicitly stated; check the vendor or Linux kernel advisory for the exact fixed versions and update accordingly.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-xjxp-4739-chg8
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-74732"]
Threat ID: 6a8a27f0acd9273b499bc6c3
Added to database: 08/22/2026, 22:51:28 UTC
Last enriched: 09/29/2026, 17:29:15 UTC
Last updated: 10/04/2026, 19:01:59 UTC
Views: 33
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.