CVE-2025-38319

MEDIUM EPSS 4.2%
Published Jul 10, 202511mo ago · Modified Jun 17, 20262w ago
5.5 CVSS 3.1
Medium
Find Similar
Published Jul 10, 2025 11mo ago
Last Modified Jun 17, 2026 2w ago

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amd/pp: Fix potential NULL pointer dereference in atomctrl_initialize_mc_reg_table The function atomctrl_initialize_mc_reg_table() and atomctrl_initialize_mc_reg_table_v2_2() does not check the return value of smu_atom_get_data_table(). If smu_atom_get_data_table() fails to retrieve vram_info, it returns NULL which is later dereferenced.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
4.2% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-476 NULL Pointer Dereference Memory Safety

Affected Products 6

VendorProductVersionRange
linuxlinux_kernel*≥4.18  –  <5.15.186
linuxlinux_kernel*≥5.16  –  <6.1.142
linuxlinux_kernel*≥6.2  –  <6.6.94
linuxlinux_kernel*≥6.7  –  <6.12.34
linuxlinux_kernel*≥6.13  –  <6.15.3
debiandebian_linux11.0any

References 7

  • git.kernel.org https://git.kernel.org/stable/c/64f3acc8c7e6809631457b75638601b36dea3129
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7080c20a9139842033ed4af604dc1fa4028593ad
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/820116a39f96bdc7d426c33a804b52f53700a919
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/85cdcb834fb490731ff2d123f87ca799c57dacf2
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a4ff7391c8b75b1541900bd9d0c238e558c11fb3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/cdf7e1ff99ab06ef15d0b5d1aca5258a4fb62b85
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/10/msg00008.html
    Third Party Advisory

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/64f3acc8c7e6809631457b75638601b36dea3129
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7080c20a9139842033ed4af604dc1fa4028593ad
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/820116a39f96bdc7d426c33a804b52f53700a919
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/85cdcb834fb490731ff2d123f87ca799c57dacf2
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a4ff7391c8b75b1541900bd9d0c238e558c11fb3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/cdf7e1ff99ab06ef15d0b5d1aca5258a4fb62b85
    Patch