Vulnerability in Linux Kernel Affecting Hyper-V Resolution Handling
CVE-2026-64524
What is CVE-2026-64524?
A vulnerability exists in the Linux kernel related to how Hyper-V handles video resolutions. Specifically, when a SYNTHVID_RESOLUTION_RESPONSE is received with a resolution_count greater than 64, it causes an overflow that bypasses the supported resolutions array. This can lead to the screen maximum dimensions being uninitialized, causing subsequent framebuffer creation attempts to fail. The fix includes validating the resolution_count against the array size and ensuring that fallback dimensions are properly set to maintain compatibility across different Windows versions.
Affected Version(s)
Linux 76c56a5affeba1e163b66b9d8cc192e6154466f0 < 96f7de3172d4aa878b7f87173b2b3507c350fcd6
Linux 76c56a5affeba1e163b66b9d8cc192e6154466f0
Linux 76c56a5affeba1e163b66b9d8cc192e6154466f0 < 1fb565b77b8f44afabb02de6310065f109d89e94