Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A race condition issue has been identified in the Linux kernel's AMD GPU driver, specifically within the buddy allocator's trim function. This vulnerability can lead to a system hang and general protection fault, likely caused by a non-canonical address. The issue arises when YouTube videos and Steam games are run simultaneously on a multi-display configuration. The lack of proper locking when accessing the buddy trim function creates a vulnerability that can be exploited under these conditions.
Exploitation of this vulnerability can cause a system hang and a general protection fault, disrupting normal system operations and potentially leading to a crash.
The vulnerability can be reproduced by running YouTube videos and Steam games at the same time on a multi-display setup. This combination triggers a race condition in the AMD GPU driver's buddy allocator, causing a system hang and a general protection fault.
A lock has been added to the buddy allocator's trim function in the Linux kernel to address this vulnerability. Users should update to the latest version of the kernel where this fix is applied.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.