CVE-2025-38426

Source
https://cve.org/CVERecord?id=CVE-2025-38426
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38426.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-38426
Downstream
Related
Published
2025-07-25T14:16:46.482Z
Modified
2026-03-20T12:42:50.944086Z
Summary
drm/amdgpu: Add basic validation for RAS header
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: Add basic validation for RAS header

If RAS header read from EEPROM is corrupted, it could result in trying to allocate huge memory for reading the records. Add some validation to header fields.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/38xxx/CVE-2025-38426.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
64f55e629237e4752db18df4d6969a69e3f4835a
Fixed
b52f52bc5ba9feb026c0be600f8ac584fd12d187
Fixed
5df0d6addb7e9b6f71f7162d1253762a5be9138e

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-38426.json"