VDB

DEBIAN-CVE-2025-38426

DEBIAN-CVE-2025-38426 PUBLISHED CVSS 5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Add basic validation for RAS header If RAS header read from EEPROM is corrupted, it could result in trying to allocate huge memory for reading the records. Add some validation to header fields.

Risk Scores

CVSS v3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Affected Products

VendorProductVersions
Debian:14linux0, 6.12.38-1, 6.12.41-1
Debian:12linux6.1.106-1, 6.1.112-1, 6.1.119-1
Debian:11linux*, 6.9.7-1, 6.9.7-1
Debian:13linux6.12.43-1, 6.12.43-1~bpo12+1, 6.12.57-1

Timeline

  • Jul 25, 2025 CVE Published
  • Apr 30, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›