Linux Kernel EDID Overflow Vulnerability in drm/bridge/anx7625

Vulnerability

A vulnerability in the Linux kernel's drm/bridge/anx7625 component allows for an overflow issue when reading Extended Display Identification Data (EDID). The vulnerability arises because the EDID block can exceed 256 bytes, necessitating the use of an 'int' type instead of 'u8' for the 'edid_pos' variable.

Impact

The vulnerability could lead to a buffer overflow, which may be exploited to execute arbitrary code or cause a denial-of-service condition.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
5.3
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.