CVE-2025-38080
Published: Jun 18, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Increase block_sequence array size [Why] It's possible to generate more than 50 steps in hwss_build_fast_sequence, for example with a 6-pipe asic where all pipes are in one MPC chain. This overflows the block_sequence buffer and corrupts block_sequence_steps, causing a crash. [How] Expand block_sequence to 100 items. A naive upper bound on the possible number of steps for a 6-pipe asic, ignoring the potential for steps to be mutually exclusive, is 91 with current code, therefore 100 is sufficient.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c - < de67e80ab48f1f23663831007a2fa3c1471a7757affected 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c - < e55c5704b12eeea27e212bfab8f7e51ad3e8ac1faffected 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c - < bf1666072e7482317cf2302621766482a21a62c7affected 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c - < 3a7810c212bcf2f722671dadf4b23ff70a7d23ee |
Linux | Linux | affected 4.15unaffected 0 - < 4.15unaffected 6.6.93 - <= 6.6.*unaffected 6.12.31 - <= 6.12.*unaffected 6.14.9 - <= 6.14.*+1 more versions |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now