Impact
A race condition in the Linux kernel’s AMD KFD driver allows in‑flight DMA descriptors to access memory that has already been unmapped during MES queue eviction or suspension, leading to page faults and GPU compute queue hangs. This interruption can suspend GPU workloads and effectively deny service to applications relying on the graphics subsystem.
Affected Systems
Linux kernel versions lacking the recent kernel Float‑based TLB flush after MES queue removal in the drm/amdkfd component are affected. The vulnerability applies to any system using this component prior to the inclusion of the patch in the kernel source tree.
Risk and Exploitability
The vulnerability scores a CVSS of 8.8, indicating high severity, but the EPSS score is below 1%, meaning the likelihood of exploitation is very low. It is not listed in CISA’s KEV catalog. The attack vector is likely local and requires the ability to drive GPU queues, so an attacker would need to execute privileged or high‑level code that interacts with the graphics driver to trigger the race.
OpenCVE Enrichment