cbcvebase.
CVE-2025-21780
published 2025-02-27

CVE-2025-21780: In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: avoid buffer overflow attach in smu_sys_set_pp_table() It malicious user…

PriorityP341high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.25%
16.0th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: avoid buffer overflow attach in smu_sys_set_pp_table() It malicious user provides a small pptable through sysfs and then a bigger pptable, it may cause buffer overflow attack in function smu_sys_set_pp_table().

Affected

30 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
debianlinux-6.1< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
linuxlinux
linuxlinux>= 137d63abbf6a0859e79b662e81d21170ecb75e59 < 3484ea33157bc7334f57e64826ec5a4bf992151a3484ea33157bc7334f57e64826ec5a4bf992151a
linuxlinux>= 137d63abbf6a0859e79b662e81d21170ecb75e59 < e43a8b9c4d700ffec819c5043a48769b3e7d9cabe43a8b9c4d700ffec819c5043a48769b3e7d9cab
linuxlinux>= 137d63abbf6a0859e79b662e81d21170ecb75e59 < 2498d2db1d35e88a2060ea191ae75dce853dd0842498d2db1d35e88a2060ea191ae75dce853dd084
linuxlinux>= 137d63abbf6a0859e79b662e81d21170ecb75e59 < 231075c5a8ea54f34b7c4794687baa980814e6de231075c5a8ea54f34b7c4794687baa980814e6de
linuxlinux>= 137d63abbf6a0859e79b662e81d21170ecb75e59 < 1abb2648698bf10783d2236a6b4a7ca5e80216991abb2648698bf10783d2236a6b4a7ca5e8021699
linuxlinux_kernel< 6.1.1296.1.129
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.129-16.1.129-1
linuxlinux_kernel>= 0 < 6.12.16-16.12.16-1
linuxlinux_kernel>= 0 < 6.12.16-16.12.16-1
linuxlinux_kernel>= 0 < 5.15.0-171.1815.15.0-171.181
linuxlinux_kernel>= 0 < 6.8.0-78.786.8.0-78.78
linuxlinux_kernel>= 0 < 5.4.0-227.2475.4.0-227.247
linuxlinux_kernel>= 6.13 < 6.13.46.13.4
linuxlinux_kernel>= 6.2 < 6.6.796.6.79
linuxlinux_kernel>= 6.7 < 6.12.166.12.16
msrcazl3_kernel_6.6.78.1-3_on_azure_linux_3.0
msrcazl3_kernel_6.6.79.1-1_on_azure_linux_3.0
msrccbl2_kernel_5.15.186.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.200.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.202.1-1_on_cbl_mariner_2.0

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.