Linux Kernel AMD GPU Error Handling Vulnerability in Power Management

Vulnerability

A vulnerability in the Linux kernel's AMD GPU driver has been addressed, related to improper error handling in the power management module. The issue arose in the 'amdgpu' component, specifically within the 'PowerPlay' management. When the function 'amdgpu_cgs_create_device()' failed, the error was not properly managed, potentially leading to a null pointer dereference. The vulnerability affected several versions of the Linux kernel.

Impact

The vulnerability could lead to a null pointer dereference, causing a crash or undefined behavior in the system.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.0
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.