Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jack Xiao

Researcher fromAMD
#17275of 53,638
15.6Total CVSS
Vulnerabilities · 2
High
2
PT-2024-32127
7.8
2024-09-12
Linux · Linux Kernel · CVE-2024-46700
**Name of the Vulnerable Software and Affected Versions** Linux kernel (affected versions not specified) **Description** The issue is related to a ring buffer overflow in the drm/amdgpu/mes component of the Linux kernel. To avoid this overflow, the kernel now waits for enough memory room before writing mes packets. The fix also includes a sched hw submission fix. There is no information provided about the estimated number of potentially affected devices or real-world incidents where this issue was exploited. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2024-5418
7.8
2024-04-23
Amd · Amdgpu · CVE-2024-38581
**Name of the Vulnerable Software and Affected Versions** Linux kernel (affected versions not specified) **Description** The issue is related to a use-after-free problem in the amdgpu driver, specifically in the `amdgpu mes remove ring()` function. This could potentially allow an attacker to impact the confidentiality, integrity, and availability of protected information. The vulnerability is fixed by deleting the fence fallback timer to resolve the random use-after-free issue. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.