{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/products/display-controller-driver/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"id":"CVE-2026-68364"}],"_cs_exploited":true,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["display controller driver"],"_cs_severities":["low"],"_cs_tags":[],"_cs_type":"threat","_cs_vendors":["AMD"],"content_html":"\u003cp\u003eThe Microsoft Security Response Center has disclosed CVE-2026-68364, a vulnerability within the Linux kernel AMD display driver (drm/amd/display). The issue resides in the ISM dc_lock mechanism, which is responsible for managing display controller locking during system suspend operations. Due to a flaw in the locking logic, a race condition or improper handling during the power management state transition can lead to a deadlock. This vulnerability affects the stability of the kernel, potentially resulting in a denial-of-service (DoS) condition where the display subsystem or the entire system becomes unresponsive. Defenders should note that this is a kernel-level stability issue rather than an exploit involving remote code execution or unauthorized access. Patching involves updating the Linux kernel to the version containing the official fix.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful triggering of this deadlock vulnerability results in a system hang or denial-of-service on hardware utilizing the affected AMD display drivers. The impact is primarily local, affecting systems running Linux kernels with the vulnerable display driver stack. This vulnerability poses a risk to system uptime and availability in environments where frequent power state transitions (suspend/resume) occur. There is no evidence of active exploitation documented in the disclosure.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize patching Linux kernel packages provided by your distribution or hardware vendor to the versions that include the fix for CVE-2026-68364. Ensure kernel update management processes are configured to apply security-related kernel updates across all Linux endpoints utilizing AMD graphics hardware.\u003c/p\u003e\n","date_modified":"2026-08-11T10:04:57Z","date_published":"2026-08-11T10:04:57Z","id":"https://feed.craftedsignal.io/briefs/2026-08-amd-display-deadlock/","summary":"CVE-2026-68364 identifies a deadlock vulnerability in the AMD Linux kernel display driver's dc_lock mechanism during suspend, potentially enabling a local denial-of-service.","title":"AMD Display Driver Kernel Deadlock Vulnerability","url":"https://feed.craftedsignal.io/briefs/2026-08-amd-display-deadlock/"}],"language":"en","title":"CraftedSignal Threat Feed - Display Controller Driver","version":"https://jsonfeed.org/version/1.1"}