Описание
In the Linux kernel, the following vulnerability has been resolved:
drm/amdgpu: Fix out-of-bounds write warning
Check the ring type value to fix the out-of-bounds
write warning
A flaw was found in the drm/amdgpu component of the Linux kernel. This out-of-bounds write vulnerability occurs due to an improper check of the ring type value. A local attacker with high privileges could exploit this flaw to cause data corruption, system instability, or potentially achieve privilege escalation.
Отчет
This flaw will need a root/admin (PR:H) to exploit the OOB write.
Меры по смягчению последствий
To mitigate this issue, prevent the amdgpu kernel module from loading. This can be achieved by creating a blacklist entry. Note that this may impact functionality if an AMD GPU is in use. A system reboot is required for the changes to take effect.
Create a file /etc/modprobe.d/blacklist-amdgpu.conf with the following content:
Then, regenerate the initramfs and reboot the system:
If the system uses an AMD GPU for display or other critical functions, blacklisting this module may lead to loss of graphics or other hardware-related functionality.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel | Not affected | ||
| Red Hat Enterprise Linux 7 | kernel | Out of support scope | ||
| Red Hat Enterprise Linux 7 | kernel-rt | Out of support scope | ||
| Red Hat Enterprise Linux 8 | kernel | Will not fix | ||
| Red Hat Enterprise Linux 8 | kernel-rt | Will not fix | ||
| Red Hat Enterprise Linux 9 | kernel-rt | Will not fix | ||
| Red Hat Enterprise Linux 9 | kernel | Fixed | RHSA-2025:6966 | 13.05.2025 |
| Red Hat Enterprise Linux 9 | kernel | Fixed | RHSA-2025:6966 | 13.05.2025 |
Показывать по
Дополнительная информация
Статус:
EPSS
6.7 Medium
CVSS3
Связанные уязвимости
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix out-of-bounds write warning Check the ring type value to fix the out-of-bounds write warning
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix out-of-bounds write warning Check the ring type value to fix the out-of-bounds write warning
In the Linux kernel, the following vulnerability has been resolved: d ...
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix out-of-bounds write warning Check the ring type value to fix the out-of-bounds write warning
EPSS
6.7 Medium
CVSS3