CVE-2025-38254
Published: Jul 9, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add sanity checks for drm_edid_raw() When EDID is retrieved via drm_edid_raw(), it doesn't guarantee to return proper EDID bytes the caller wants: it may be either NULL (that leads to an Oops) or with too long bytes over the fixed size raw_edid array (that may lead to memory corruption). The latter was reported actually when connected with a bad adapter. Add sanity checks for drm_edid_raw() to address the above corner cases, and return EDID_BAD_INPUT accordingly. (cherry picked from commit 648d3f4d209725d51900d6a3ed46b7b600140cdf)
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 48edb2a4256eedf6c92eecf2bc7744e6ecb44b5e - < 4b63507d7cd243574753c6b91f68516d9103f1deaffected 48edb2a4256eedf6c92eecf2bc7744e6ecb44b5e - < 6847b3b6e84ef37451c074e6a8db3fbd250c8dbf |
Linux | Linux | affected 6.13unaffected 0 - < 6.13unaffected 6.15.5 - <= 6.15.*unaffected 6.16 - <= * |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now