What happened
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix UVD dpb min size calculation for H264 This should use actual number of references from the decode message, instead of maximum derived from level. (cherry picked from commit 64b525edb7e7bdfcdc77883c5e413804e2396856)
Affected versions
Linux: d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before fa96c24485942e277483cc70d9551d9e0111d7c5 (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before 33f4ef585368fe93523dca1e5440e006f6e5146e (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before 38914cb2c6afb5fe00241ea3438e655822196378 (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before ff4361816b6ba4bd29b548b17d993056a1ae2502 (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before 21a8084cd76223a13493237e04d45f5226d7cee6 (git); 4.2 Fixed: See vendor advisory.
Why it matters
Review the vendor advisory and exposure of the affected product to determine operational impact.
Detection & mitigation
- Apply vendor-provided updates or mitigations.
- Review affected product exposure and access logs.
Public PoC references
No public PoC reference has passed the current publication threshold.