Description
In the Linux kernel, the following vulnerability has been resolved:

drm/amd/powerplay: fix VoltageObjectInfo zero-stride loop and OOB read

Reject voltage objects whose usSize is smaller than the header or would
advance the cursor past the table end, preventing an infinite loop or
heap OOB read when the VBIOS supplies a malformed VoltageObjectInfo table.
Published: 2026-09-17
Score: n/a
EPSS: < 1% Very Low
KEV: No
Impact: Out‑of‑Bounds Read and Infinite Loop in Linux Kernel
Action: Apply Patch
AI Analysis

Impact

The flaw in the Linux kernel’s AMD DRM powerplay driver occurs when a VoltageObjectInfo table supplied by the VBIOS does not validate its usSize field. A malformed table whose usSize is smaller than the header or would move the cursor past the table end triggers a zero‑stride loop or causes the driver to read beyond the heap boundary. This results in either a denial‑of‑service by an infinite loop or an out‑of‑bounds read that could expose private kernel memory. The affected code path can therefore be used by a hostile firmware author to compromise kernel confidentiality or availability.

Affected Systems

All Linux kernel builds that include the drm/amd/powerplay code before the commit fixing the loop are vulnerable. The vendor information lists Linux:Linux, indicating that every distribution shipping the stock kernel is potentially impacted. No specific kernel version range is listed, so any release that has not yet integrated the fix remains at risk.

Risk and Exploitability

The EPSS score for this vulnerability is reported as less than 1 % and it is not included in the CISA KEV catalog, suggesting a low probability of widespread exploitation. However, the flaw is locally exploitable from a malicious or corrupted VBIOS; an attacker who can supply a tainted firmware image to the GPU can trigger the out‑of‑bounds read or infinite loop. Once invoked, the impact is confined to the kernel, which may lead to data leakage or system instability.

Generated by OpenCVE AI on September 19, 2026 at 07:29 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade the Linux kernel to a version that includes commit 5d3cc8e388464f485d0944b87b8f9426e637d082 or 83c680de6d41d627c077dedb24f89d9e5be0e2a2
  • If a kernel update is not immediately feasible, limit the GPU firmware to a known‐good VBIOS image and avoid loading unverified firmware that could contain malformed VoltageObjectInfo tables
  • Monitor kernel logs (dmesg, journalctl) for abnormal DRM driver activity or out‑of‑bounds read warnings and apply the patch as soon as a stable update becomes available

Generated by OpenCVE AI on September 19, 2026 at 07:29 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: drm/amd/powerplay: fix VoltageObjectInfo zero-stride loop and OOB read Reject voltage objects whose usSize is smaller than the header or would advance the cursor past the table end, preventing an infinite loop or heap OOB read when the VBIOS supplies a malformed VoltageObjectInfo table.
Title drm/amd/powerplay: fix VoltageObjectInfo zero-stride loop and OOB read
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-17T16:12:07.307Z

Reserved: 2026-09-17T16:02:15.091Z

Link: CVE-2026-93179

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-17T17:18:13.773

Modified: 2026-09-17T17:18:13.773

Link: CVE-2026-93179

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T08:00:08Z

Weaknesses

No weakness.