CVE-2025-37870

MEDIUM

Linux Kernel 6.3-6.12.24, 6.13.0-6.14.3, 6.15 - Denial of Service via DRM AMD Display Link Training Failure

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: prevent hang on link training fail [Why] When link training fails, the phy clock will be disabled. However, in enable_streams, it is assumed that link training succeeded and the mux selects the phy clock, causing a hang when a register write is made. [How] When enable_stream is hit, check if link training failed. If it did, fall back to the ref clock to avoid a hang and keep the system in a recoverable state.

Scores

CVSS v3 5.5
EPSS 0.0023
EPSS Percentile 13.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (11)
linux/Kernel 6.13.0 - 6.14.4linux
linux/Kernel 6.3.0 - 6.12.25linux
Linux/Linux < 6.3
Linux/Linux 6.12.25 - 6.12.*
Linux/Linux 6.14.4 - 6.14.*
Linux/Linux 6.15
Linux/Linux 6.3
Linux/Linux 7462475e3a06fbb0b36243b391296f9f411e9041 - 0363c03672cd3191f037905bf981eb523a3b71b1
Linux/Linux 7462475e3a06fbb0b36243b391296f9f411e9041 - 04bf4f2a497e9877c425c5124652e61fb8a1a0aa
Linux/Linux 7462475e3a06fbb0b36243b391296f9f411e9041 - 8058061ed9d6bc259d1e678607b07d259342c08f
... and 1 more
Published May 09, 2025
Tracked Since Feb 18, 2026