cbcvebase.
CVE-2025-68326
published 2025-12-22

CVE-2025-68326: In the Linux kernel, the following vulnerability has been resolved: drm/xe/guc: Fix stack_depot usage Add missing stack_depot_init() call when…

PriorityP419high7.2
EPSS
0.15%
5.1th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/xe/guc: Fix stack_depot usage Add missing stack_depot_init() call when CONFIG_DRM_XE_DEBUG_GUC is enabled to fix the following call stack: [] BUG: kernel NULL pointer dereference, address: 0000000000000000 [] Workqueue: drm_sched_run_job_work [gpu_sched] [] RIP: 0010:stack_depot_save_flags+0x172/0x870 [] Call Trace: [] [] fast_req_track+0x58/0xb0 [xe] (cherry picked from commit 64fdf496a6929a0a194387d2bb5efaf5da2b542f)

Affected

7 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.17.11-1 (forky)linux 6.17.11-1 (forky)
linuxlinux
linuxlinux>= 16b7e65d299d56442879405ac85800877fa51355 < 1966838d1c82149cbf4a652322d26a6e5aae9c4e1966838d1c82149cbf4a652322d26a6e5aae9c4e
linuxlinux>= 16b7e65d299d56442879405ac85800877fa51355 < 0e234632e39bd21dd28ffc9ba3ae8eec4deb949c0e234632e39bd21dd28ffc9ba3ae8eec4deb949c
linuxlinux_kernel>= 0 < 6.17.11-16.17.11-1
linuxlinux_kernel>= 0 < 6.17.0-19.196.17.0-19.19
linuxlinux_kernel>= 6.17.0 < 6.17.116.17.11

CVSS provenance

osv7.2HIGH
vendor_ubuntu7.2HIGH
vendor_redhat5.5LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.