---
id: CVE-2026-53313
title: |-
  In the Linux kernel, the following vulnerability has been resolved:

  drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths

  In dc_dmub_srv_log_diagnostic_data() and
  dc_dmub_srv_enable_dpia_trace().

  Both functions check:

    …
summary: |-
  In the Linux kernel, the following vulnerability has been resolved:

  drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths

  In dc_dmub_srv_log_diagnostic_data() and
  dc_dmub_srv_enable_dpia_trace().

  Both functions check:

    …
severity: medium
cvss: 5.5
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'
cwe:
  - CWE-476
vendor: linux
product: linux_kernel
affected:
  - 'linux_kernel >= 5.14, < 7.0.10'
patched:
  - linux_kernel 7.0.10
published: '2026-06-26'
updated: '2026-09-07'
sourceUpdated: '2026-09-07T16:17:28.797'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-53313'
references:
  - url: 'https://git.kernel.org/stable/c/2ab18de5ebb11c76bfc8087c5a09fbcccd0dea8a'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/4ae3e16f4b3bf64140f773629b765d605ee079a9'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/a71fdbd6e8289e2725d33a9873833459f3b1824f'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
  - url: 'https://git.kernel.org/stable/c/b37a978e6d8c33fbfa4abc5dcca4c7cfc6d01f22'
    label: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
tags:
  - nvd
  - cve.org
epss: 0.00114
epssPercentile: 0.01688
ingestedAt: '2026-09-08T15:33:26.945Z'
---

## Overview

In the Linux kernel, the following vulnerability has been resolved:

drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths

In dc_dmub_srv_log_diagnostic_data() and
dc_dmub_srv_enable_dpia_trace().

Both functions check:

  if (!dc_dmub_srv || !dc_dmub_srv->dmub)

and then call DC_LOG_ERROR() inside that block.

DC_LOG_ERROR() uses dc_dmub_srv->ctx internally. So if
dc_dmub_srv is NULL, the logging itself can dereference a
NULL pointer and cause a crash.

Fix this by splitting the checks.

First check if dc_dmub_srv is NULL and return immediately.
Then check dc_dmub_srv->dmub and log the error only when
dc_dmub_srv is valid.

Fixes the below:
../display/dc/dc_dmub_srv.c:962 dc_dmub_srv_log_diagnostic_data() error: we previously assumed 'dc_dmub_srv' could be null (see line 961)
../display/dc/dc_dmub_srv.c:1167 dc_dmub_srv_enable_dpia_trace() error: we previously assumed 'dc_dmub_srv' could be null (see line 1166)

## Affected

- `linux_kernel >= 5.14, < 7.0.10`

## Remediation

Upgrade past the affected range:

- `linux_kernel 7.0.10`
