Linux Kernel AMDGPU Device Removal Hang Vulnerability

Vulnerability

A vulnerability in the Linux kernel's AMDGPU graphics driver can cause a hang and a call trace warning when removing an AMDGPU device on GPUs with Reliability, Availability, and Serviceability (RAS) enabled. This issue occurs because the driver improperly manages the device's shutdown process, leading to a memory wipe that disrupts normal operations.

Impact

The vulnerability causes a hang in the system, disrupting normal operations and potentially leading to a denial of service.

Reproduction

The vulnerability can be reproduced by removing an AMDGPU device on a system with RAS enabled. This action will trigger a call trace warning and cause the system to hang, indicating a disruption in normal operations.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.3
remediation
0.0
relevance
0.0
threat
4.8
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.