CVE-2025-38361
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check dce_hwseq before dereferencing it [WHAT] hws was checked for null earlier in dce110_blank_stream, indicating hws can be null, and should be checked whenever it is…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.20%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check dce_hwseq before dereferencing it [WHAT] hws was checked for null earlier in dce110_blank_stream, indicating hws can be null, and should be checked whenever it is used. (cherry picked from commit 79db43611ff61280b6de58ce1305e0b2ecf675ad)
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.20% probability · 10th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/5e1482ae14b03b9fca73ef5afea26ede683f4450Patch
- https://git.kernel.org/stable/c/60e450eec5d63113c6ad5c456ce64c12b4496a6ePatch
- https://git.kernel.org/stable/c/b669507b637eb6b1aaecf347f193efccc65d756ePatch
- https://git.kernel.org/stable/c/df11bf0ef795b6d415c4d8ee54fa3f2105e75bcbPatch
- https://git.kernel.org/stable/c/e881b82f5d3d8d54d168cd276169f0fee01bf0e7Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.