What the vulnerability does

01Description

An issue was discovered in the Linux kernel through 5.16-rc6. kfd_parse_subtype_iolink in drivers/gpu/drm/amd/amdkfd/kfd_crat.c lacks check of the return value of kmemdup().

Key dates

02Disclosure timeline

December 14, 2022 CVE published
April 22, 2025 Record updated