Impact
A NULL pointer dereference in AMD’s DRM driver causes the kernel to oops when a second DisplayPort Multi‑Stream Transport (MST) stream is allocated. On DCE8‑class GPUs the driver may pick an analog encoder for the second stream, which lacks the required DP functions, leading to a crash during atomic commit.
Affected Systems
All Linux kernel builds up through 7.1.2 that include the AMD DRM module for DCE8‑class ASICs, such as the Radeon R7 260X (Bonaire). The flaw is observable when a second monitor is hot‑plugged or enabled at boot in a DP MST daisy‑chain configuration.
Risk and Exploitability
The CVSS score is 4.4, indicating moderate severity, while the EPSS score of < 1 % suggests a very low likelihood of exploitation in the wild. The vulnerability does not appear in CISA’s KEV catalog. The likely attack vector involves local control of the hardware to trigger the second MST stream, such as hot‑plugging a monitor or enabling a second display; it is not explicitly documented as remotely exploitable.
OpenCVE Enrichment
Debian DLA