Impact
The flaw occurs in the Linux kernel’s AMDGPU VCE1 driver where the firmware image is placed at an offset that is not reflected in the allocated buffer size. When the firmware is loaded, the kernel may read or write past the end of the buffer, corrupting memory. This memory corruption could lead to a system crash or denial of service. The vulnerability is classified as an Out-of-Bounds Read (CWE‑125).
Affected Systems
It is inferred that all Linux distributions that ship a kernel containing the AMDGPU VCE1 driver – including Ubuntu, Fedora, Debian, and others – are affected as long as the kernel includes the unpatched code.
Risk and Exploitability
The EPSS score is less than 1 %, and the vulnerability is not listed in the CISA KEV catalog, implying a very low likelihood of widespread exploitation. The CVSS score of 8.8 indicates high severity for a local attacker with the ability to load custom firmware or disrupt the VCE1 driver. Based on the description, it is inferred that attackers would need local access to trigger the firmware load through the VCE1 driver; no known public exploits have been disclosed.
OpenCVE Enrichment
Ubuntu USN