CVE-2025-21784 – AMD GPU Firmware Loading Invalid Memory Access Vulnerability

The following table lists the changes that have been made to the
CVE-2025-21784 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by 416baaa9-dc9f-4396-8d5f-8c081fb06d67

    Feb. 27, 2025

    Action Type Old Value New Value
    Added Description In the Linux kernel, the following vulnerability has been resolved:

    drm/amdgpu: bail out when failed to load fw in psp_init_cap_microcode()

    In function psp_init_cap_microcode(), it should bail out when failed to
    load firmware, otherwise it may cause invalid memory access.

    Added Reference https://git.kernel.org/stable/c/3f40a7ff39d9f1d283d5aa9b13e2fb16200aff5f
    Added Reference https://git.kernel.org/stable/c/a0a455b4bc7483ad60e8b8a50330c1e05bb7bfcf
    Added Reference https://git.kernel.org/stable/c/d1d10bd595539ed82ab59b60249f9bdf0994f678
    Added Reference https://git.kernel.org/stable/c/e7eb84384335e2abf960c94ec0f8c5b835283777
Share the Post:

Related Posts