Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CVE-2025-68184

7.1 · HIGH
Published Dec 16, 2025 EPSS 0.14% (4th pctl)

Overview

CVE-2025-68184 is a high-severity vulnerability. It was published on December 16, 2025 and has a CVSS 3.1 base score of 7.1 (HIGH).

This vulnerability has a CVSS 3.1 base score of 7.1, rated HIGH. It requires local or adjacent network access to exploit. Some level of privileges is required for exploitation.

Technical Description

In the Linux kernel, the following vulnerability has been resolved:

drm/mediatek: Disable AFBC support on Mediatek DRM driver

Commit c410fa9b07c3 ("drm/mediatek: Add AFBC support to Mediatek DRM

driver") added AFBC support to Mediatek DRM and enabled the

32x8/split/sparse modifier.

However, this is currently broken on Mediatek MT8188 (Genio 700 EVK

platform); tested using upstream Kernel and Mesa (v25.2.1), AFBC is used by

default since Mesa v25.0.

Kernel trace reports vblank timeouts constantly, and the render is garbled:

```

[CRTC:62:crtc-0] vblank wait timed out

WARNING: CPU: 7 PID: 70 at drivers/gpu/drm/drm_atomic_helper.c:1835 drm_atomic_helper_wait_for_vblanks.part.0+0x24c/0x27c

[...]

Hardware name: MediaTek Genio-700 EVK (DT)

Workqueue: events_unbound commit_work

pstate: 60400009 (nZCv daif +PAN -UAO -TCO -DIT -SSBS BTYPE=--)

pc : drm_atomic_helper_wait_for_vblanks.part.0+0x24c/0x27c

lr : drm_atomic_helper_wait_for_vblanks.part.0+0x24c/0x27c

sp : ffff80008337bca0

x29: ffff8

Remediation

Check the references section for vendor advisories, patches, and mitigation guidance. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

Frequently Asked Questions

What is CVE-2025-68184?

CVE-2025-68184 is a high-severity vulnerability. It was published on December 16, 2025 and has a CVSS 3.1 base score of 7.1 (HIGH).

How severe is CVE-2025-68184?

This vulnerability has a CVSS 3.1 base score of 7.1, rated HIGH. It requires local or adjacent network access to exploit. Some level of privileges is required for exploitation.

How do I fix or remediate CVE-2025-68184?

Check the references section for vendor advisories, patches, and mitigation guidance. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

How can CyberStrike help with CVE-2025-68184?

CyberStrike's AI-powered security agents can automatically detect CVE-2025-68184 across your infrastructure using autonomous pentesting, DAST scanning, and HackBrowser. The platform continuously monitors for known vulnerabilities and provides actionable remediation guidance prioritized by real-world exploitability.