CVE-2025-38254
MEDIUMLinux Kernel 6.13-6.15.5 - Memory Corruption via Improper EDID Handling in drm_amd_display
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add sanity checks for drm_edid_raw() When EDID is retrieved via drm_edid_raw(), it doesn't guarantee to return proper EDID bytes the caller wants: it may be either NULL (that leads to an Oops) or with too long bytes over the fixed size raw_edid array (that may lead to memory corruption). The latter was reported actually when connected with a bad adapter. Add sanity checks for drm_edid_raw() to address the above corner cases, and return EDID_BAD_INPUT accordingly. (cherry picked from commit 648d3f4d209725d51900d6a3ed46b7b600140cdf)
References (2)
Core 2
Scores
CVSS v3
5.5
EPSS
0.0012
EPSS Percentile
2.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
Status
published
Products (9)
linux/Kernel
6.13.0 - 6.15.5linux
Linux/Linux
< 6.13
Linux/Linux
48edb2a4256eedf6c92eecf2bc7744e6ecb44b5e - 4b63507d7cd243574753c6b91f68516d9103f1de
Linux/Linux
48edb2a4256eedf6c92eecf2bc7744e6ecb44b5e - 6847b3b6e84ef37451c074e6a8db3fbd250c8dbf
Linux/Linux
6.13
Linux/Linux
6.15.5 - 6.15.*
Linux/Linux
6.16
linux/linux_kernel
6.16 rc1 (3 CPE variants)
linux/linux_kernel
6.13 - 6.15.5
Published
Jul 09, 2025
Tracked Since
Feb 18, 2026