---
cve: "CVE-2025-38426"
severity: "LOW"
cvss: 3.1
epss: "16%"
vendor: "Linux"
kev: false
exploited: false
published: "2025-07-25 15:15:27"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-13T14:34:52+02:00"
---

# CVE-2025-38426

> 3.1 LOW

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: Add basic validation for RAS header

If RAS header read from EEPROM is corrupted, it could result in trying
to allocate huge memory for reading the records. Add some validation to
header fields.

## Patch verfügbar (OSV)

- Kernel ≥ 6.6.130
- Kernel ≥ 6.12.78
- Kernel ≥ 6.15.4

## Referenzen

- <https://git.kernel.org/stable/c/e1903358b2152f5d64a83e796bb776aba0d3628d>
- <https://git.kernel.org/stable/c/0479268fdfaaff6e15d69e8a8387410f36d1b793>
- <https://git.kernel.org/stable/c/b52f52bc5ba9feb026c0be600f8ac584fd12d187>
- <https://git.kernel.org/stable/c/5df0d6addb7e9b6f71f7162d1253762a5be9138e>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2025-38426) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
