Description
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check correct bounds for stream encoder instances for DCN303 [Why & How] eng_id for DCN303 cannot be more than 1, since we have only two instances of stream encoders. Check the correct boundary condition for engine ID for DCN303 prevent the potential out of bounds access.
References (3)
Core 3
Scores
CVSS v3
7.1
EPSS
0.0005
EPSS Percentile
15.9%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Details
CWE
CWE-125
Status
published
Products (4)
linux/Kernel
5.14.0 - 5.15.63linux
linux/Kernel
5.16.0 - 5.19.4linux
linux/linux_kernel
6.0 rc1
linux/linux_kernel
5.14 - 5.15.63
Published
Jun 18, 2025
Tracked Since
Feb 18, 2026