CVE-2026-97425

Summary

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: fix buffer overflow during vBIOS update

Clamp the buffer postion to write by setting the bin attribute to the maximum buffer size so that VFS layer will block the out-of-bounds accessing.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux8424f2ccb3c0dd43369288a47d15c980136c3bd5 < c7b2af01ee2ecfb8f2289dc83524d8fb1ec72992affected
LinuxLinux8424f2ccb3c0dd43369288a47d15c980136c3bd5 < 29fef371331e87311822000535f491ffc3d7a64faffected
LinuxLinux8424f2ccb3c0dd43369288a47d15c980136c3bd5 < 6229898d46c0cbc238a6fe9f11c1ea12cf8bb9c5affected
LinuxLinux5.19affected
LinuxLinux0 < 5.19unaffected
LinuxLinux6.12.111 <= 6.12.*unaffected
LinuxLinux6.18.53 <= 6.18.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References