CVE-2025-39707

MEDIUM

Linux Kernel 4.15-6.12.43, 6.13-6.16.3, 6.17 - Null Pointer Dereference in amdgpu_dm_capabilities DebugFS

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: check if hubbub is NULL in debugfs/amdgpu_dm_capabilities HUBBUB structure is not initialized on DCE hardware, so check if it is NULL to avoid null dereference while accessing amdgpu_dm_capabilities file in debugfs.

Scores

CVSS v3 5.5
EPSS 0.0013
EPSS Percentile 3.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-476
Status published
Products (11)
linux/Kernel 4.15.0 - 6.12.44linux
linux/Kernel 6.13.0 - 6.16.4linux
Linux/Linux < 4.15
Linux/Linux 4.15
Linux/Linux 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c - 83cfdc2b018cd9c0f927b781d4e07c0d4a911fac
Linux/Linux 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c - 98e92fceb9507901e3e8b550e93b843306abd354
Linux/Linux 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c - b4a69f7f29c8a459ad6b4d8a8b72450f1d9fd288
Linux/Linux 6.12.44 - 6.12.*
Linux/Linux 6.16.4 - 6.16.*
Linux/Linux 6.17
... and 1 more
Published Sep 05, 2025
Tracked Since Feb 18, 2026