CVE-2025-68190

medium

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/atom: Check kcalloc() for WS buffer in amdgpu_atom_execute_table_locked() kcalloc() may fail. When WS is non-zero and allocation fails, ectx.ws remains NULL while ectx.ws_size is set, leading to a potential NULL pointer dereference in atom_get_src_int() when accessing WS entries. Return -ENOMEM on allocation failure to avoid the NULL dereference.

References

https://git.kernel.org/stable/c/cc9a8e238e42c1f43b98c097995137d644b69245

https://git.kernel.org/stable/c/997e28d3d00a1d30649629515e4402612921205b

https://git.kernel.org/stable/c/88d198836f628c57536c6c71d13e90c5d15fbf1a

https://git.kernel.org/stable/c/73853208a497a036596dcf9efbff8ce927651d3a

https://git.kernel.org/stable/c/47252c7d5559d8776ad336be9c955d8404e7ae69

https://git.kernel.org/stable/c/35f3fb86bb0158a298d6834e7e110dcaf07f490c

https://git.kernel.org/stable/c/0b52e3192181b4de58844faedd2928e5c6ca0e06

https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-203706

Details

Source: Mitre, NVD

Published: 2025-12-16

Updated: 2026-10-03

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00205