In the Linux kernel, the following vulnerability has been resolved: drm/hyperv: validate resolution_count and fix WIN8 fallback A… (CVE-2026-64524)
A vulnerability in the Linux kernel's drm/hyperv component was resolved by validating the resolution_count to prevent out-of-bounds array access and fixing a fallback logic issue for Windows 8 and Windows 10 resolution probes. The flaw allowed resolution_count values greater than the supported maximum to bypass array bounds checks, and improper fallback handling caused framebuffer creation failures.
AI Analysis
Technical Summary
The Linux kernel vulnerability CVE-2026-64524 involves the drm/hyperv driver where a SYNTHVID_RESOLUTION_RESPONSE message with a resolution_count exceeding the supported maximum (64) could lead to out-of-bounds access of the supported_resolution array during parsing. Additionally, when the Windows 10 resolution probe fails, the fallback logic in hyperv_connect_vsp() did not properly populate screen and preferred resolution parameters, causing mode_config dimensions to be zero and resulting in drm_internal_framebuffer_create() rejecting all userspace framebuffer requests with an -EINVAL error. The fix bounds resolution_count against the maximum array size and consolidates fallback logic for Windows 8 and Windows 10 to ensure proper default resolution values are set.
Potential Impact
The vulnerability could cause out-of-bounds array access in the kernel, potentially leading to memory corruption or instability. The fallback logic issue could prevent userspace framebuffer creation, impacting graphics functionality under certain conditions. No known exploits in the wild have been reported.
Mitigation Recommendations
A fix has been implemented in the Linux kernel to validate resolution_count and correct the fallback logic for Windows 8 and Windows 10 resolution probes. Users should update to the patched kernel versions once available. Patch status is not explicitly confirmed here; check the official Linux kernel advisories or distribution updates for the fixed versions and apply them accordingly.
In the Linux kernel, the following vulnerability has been resolved: drm/hyperv: validate resolution_count and fix WIN8 fallback A… (CVE-2026-64524)
Description
A vulnerability in the Linux kernel's drm/hyperv component was resolved by validating the resolution_count to prevent out-of-bounds array access and fixing a fallback logic issue for Windows 8 and Windows 10 resolution probes. The flaw allowed resolution_count values greater than the supported maximum to bypass array bounds checks, and improper fallback handling caused framebuffer creation failures.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Linux kernel vulnerability CVE-2026-64524 involves the drm/hyperv driver where a SYNTHVID_RESOLUTION_RESPONSE message with a resolution_count exceeding the supported maximum (64) could lead to out-of-bounds access of the supported_resolution array during parsing. Additionally, when the Windows 10 resolution probe fails, the fallback logic in hyperv_connect_vsp() did not properly populate screen and preferred resolution parameters, causing mode_config dimensions to be zero and resulting in drm_internal_framebuffer_create() rejecting all userspace framebuffer requests with an -EINVAL error. The fix bounds resolution_count against the maximum array size and consolidates fallback logic for Windows 8 and Windows 10 to ensure proper default resolution values are set.
Potential Impact
The vulnerability could cause out-of-bounds array access in the kernel, potentially leading to memory corruption or instability. The fallback logic issue could prevent userspace framebuffer creation, impacting graphics functionality under certain conditions. No known exploits in the wild have been reported.
Mitigation Recommendations
A fix has been implemented in the Linux kernel to validate resolution_count and correct the fallback logic for Windows 8 and Windows 10 resolution probes. Users should update to the patched kernel versions once available. Patch status is not explicitly confirmed here; check the official Linux kernel advisories or distribution updates for the fixed versions and apply them accordingly.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-2rhv-cg46-xrx8
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-64524"]
- Ecosystems
- []
- Database Specific Severity
- null
- Cvss Version
- null
Threat ID: 6a6542059c2644c7f8081b08
Added to database: 07/25/2026, 23:08:53 UTC
Last enriched: 07/25/2026, 23:12:27 UTC
Last updated: 07/26/2026, 03:59:41 UTC
Views: 4
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.