CVE-2025-38093

MEDIUM

Linux Kernel 6.11-6.12.33, 6.13.0-6.14.9, 6.15.0 - Denial of Service via GPU Overheating

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: arm64: dts: qcom: x1e80100: Add GPU cooling Unlike the CPU, the GPU does not throttle its speed automatically when it reaches high temperatures. With certain high GPU loads it is possible to reach the critical hardware shutdown temperature of 120°C, endangering the hardware and making it impossible to run certain applications. Set up GPU cooling similar to the ACPI tables, by throttling the GPU speed when reaching 95°C and polling every 200ms.

Scores

CVSS v3 5.5
EPSS 0.0014
EPSS Percentile 3.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (14)
linux/Kernel 6.11.0 - 6.12.34linux
linux/Kernel 6.13.0 - 6.14.10linux
linux/Kernel 6.15.0 - 6.15.1linux
Linux/Linux < 6.11
Linux/Linux 6.11
Linux/Linux 6.12.34 - 6.12.*
Linux/Linux 6.14.10 - 6.14.*
Linux/Linux 6.15.1 - 6.15.*
Linux/Linux 6.16
Linux/Linux 721e38301b79a6ee8375cb0ebd586699a7f353e3 - 5ba21fa11f473c9827f378ace8c9f983de9e0287
... and 4 more
Published Jul 02, 2025
Tracked Since Feb 18, 2026