In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Bound GPIO I2C table entry count from VBIOS Reject undersized tables and cap the derived entry count to AMDGPU_MAX_I2C_BUS so we do not overrun adev->i2c_bus[] or walk an absurd number of entries on corrupt size fields.
https://git.kernel.org/stable/c/f8f0985375c3b977757fd73e2b691ff1bf1ea7b9
https://git.kernel.org/stable/c/a99cd231cd924b7160fecb9fb3a94b801522323b