CVE-2025-68228: Linux
EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: drm/plane: Fix create_in_format_blob() return value create_in_format_blob() is either supposed to return a valid pointer or an error, but never NULL. The caller will dereference the blob when it is not an error, and thus will oops if NULL returned. Return proper error values in the failure cases.
Affected products
- Linux Linux: from 6.16, before 6.17.10 (fixed in 6.17.10)
Published 2025-12-16. Last modified 2026-06-17.