CVE-2026-80704 is a vulnerability in Linux Kernel
Published on August 28, 2026
drm/amd/display: use proper context for logging
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: use proper context for logging
The same as the rest of the code, get_ss_info_from_atombios() uses
calc_pll_cs->ctx->logger for logging. But calc_pll_cs->ctx is
initialized only later in calc_pll_max_vco_construct(). Therefore, any
output using DC_LOG_SYNC() leads to a NULL pointer deference in
get_ss_info_from_atombios().
According to Sashiko, the very same problem exists in
dce112_get_pix_clk_dividers() and dcn3_get_pix_clk_dividers() too.
To avoid accessing the NULL context, use clk_src->base.ctx->logger
everywhere. That context in base is initialized earlier in
dce110_clk_src_construct() and dce112_clk_src_construct(). Before
get_ss_info_from_atombios() or Sashiko's get_pix_clk_dividers functions
above are actually called. This is done by redefining DC_LOGGER to
CTX->logger.
Before:
dce110_clk_src_construct() did:
-> sets clk_src->base.ctx = ctx;
-> ss_info_from_atombios_create()
-> get_ss_info_from_atombios() <- uses calc_pll_cs->ctx # BOOM
-> calc_pll_max_vco_construct() <- sets calc_pll_cs->ctx
After:
dce110_clk_src_construct() does:
-> sets clk_src->base.ctx = ctx;
-> ss_info_from_atombios_create()
-> get_ss_info_from_atombios() <- uses clk_src->base.ctx
(cherry picked from commit 6f16fcbb0c46a87e3d9685407e906573d60104b0)
Products Associated with CVE-2026-80704
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version 1296423bf23c7a58133970e223b1f47ec6570308 and below a94e62b7c7018fcfe0251e53fa96af30f12d923a is affected.
- Version 1296423bf23c7a58133970e223b1f47ec6570308 and below 02647d98340738f918690ed227fdcf154db1b84a is affected.
- Version 1296423bf23c7a58133970e223b1f47ec6570308 and below f556bc844cc4423e5ad41ae41a4c24f1cf75b978 is affected.
- Version 1296423bf23c7a58133970e223b1f47ec6570308 and below 114b42507b6a23d9d24e24e4ef165233332c64d4 is affected.
- Version 4.17 is affected.
- Before 4.17 is unaffected.
- Version 6.12.103, <= 6.12.* is unaffected.
- Version 6.18.44, <= 6.18.* is unaffected.
- Version 7.1.8, <= 7.1.* is unaffected.
- Version 7.2, <= * is unaffected.