What happened
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Reject UVD message with dimensions above 4096 Fixes potential overflow in DPB size calculations. (cherry picked from commit 05e1387d151f71569fbe122d2c89f9db0c21dc10)
Affected versions
Linux: d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before 8bae80eaed00e7ae28412a3cdf590f4beca72294 (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before 9adc5e25f31d7ee7dfc18814499b6e3a6d402904 (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before 382bef781ff441ce8055bdada57b8c291dc0fd30 (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before 8435d41afcf2bc31ecee213ef651c12bd1a16d38 (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before f7af372d3b892b95dd3cd1c6acf29daa39ba076d (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before 339deb76ee4859ea973e435c9a9a4a4fefc29338 (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before 17fbb996c05f2190e0fa20927ca0b9804d481b02 (git); d38ceaf99ed015f2a0b9af3499791bd3a3daae21 through before 8c9aebcdd9f46f7a14b98d6ab18574b7a48fbb08 (git); 4.2 Fixed: See vendor advisory.
Why it matters
Review the vendor advisory and exposure of the affected product to determine operational impact.
Detection & mitigation
- Apply vendor-provided updates or mitigations.
- Review affected product exposure and access logs.
Public PoC references
No public PoC reference has passed the current publication threshold.