Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability exists in the Linux kernel's handling of command buffers for AMD GPUs, specifically within the AMD DNA acceleration driver. The issue arises because the count field in the command header, which is meant to indicate the valid payload size, is not properly validated against the remaining buffer space. This could potentially lead to buffer overflows or memory corruption.
Exploitation of this vulnerability could result in memory corruption or a buffer overflow, which may lead to arbitrary code execution or causing a system crash.
Users can upgrade to the latest version of the Linux kernel where this vulnerability has been addressed. Instructions for downloading the patched version are available on the official Linux kernel website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.