In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/mes: Fix hung_queue_db_array loop limit for multi-XCC The loop iterated only AMDGPU_MAX_MES_PIPES times, leaving entries uninitialized for multi-XCC GPUs. This causes null pointer dereferences when accessing arrays indexed by XCC ID >= 2. Extend the loop to cover all XCCs (AMDGPU_MAX_MES_PIPES * num_xcc), matching other per-XCC arrays.
https://git.kernel.org/stable/c/7ff668cfc3960ed5b944ac35129f18a15ea08b74
https://git.kernel.org/stable/c/2c256086a363f01f9840a57949506eccf5c990a6