CVE-2026-53347: drm/virtio: Fix driver removal with disabled KMS
drm/virtio: Fix driver removal with disabled KMS
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.143.1-1 - Compensating control
For the affected Linux kernel configuration where the drm/virtio driver is built with disabled KMS, skip shutting down / avoid the driver removal/unbinding step that causes DRM atomic and modesetting initialization failure and can lead to access of uninitialized data.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-53347?
CVE-2026-53347 has a risk rating of 34, indicating a low to moderate vulnerability in the Linux kernel.
How do I fix CVE-2026-53347?
To fix CVE-2026-53347, update the Linux kernel to the latest version where the vulnerability has been patched.
What are the potential impacts of CVE-2026-53347?
The potential impacts of CVE-2026-53347 include kernel crashes due to access of uninitialized data during driver removal.
Which component is affected by CVE-2026-53347?
CVE-2026-53347 affects the virtio-gpu driver in the Linux kernel when built with disabled KMS.
When was CVE-2026-53347 published?
CVE-2026-53347 was published on July 1, 2026.