Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
- < 2e43b66fceacd6e982b94f2e3f8b34edd7463396
A vulnerability in the Linux kernel's AMDGPU VCN3 decoder can lead to buffer overflow issues. This vulnerability arises from improper boundary checks when parsing decode messages, which could allow out-of-bounds reads. The issue affects the stable versions of the Linux kernel.
Exploitation of this vulnerability could result in buffer overflow, potentially leading to arbitrary code execution or memory corruption.
The vulnerability can be reproduced by sending a decode message that includes an offset and size. If the size is less than 4 or if the offset and size calculations overflow, the decoder may read beyond the intended memory bounds, causing an out-of-bounds read.
Users can upgrade to the latest stable version of the Linux kernel where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.