Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: fix null pointer access Writing a string without delimiters (' ', '\n', '\0') to the under gpu_od/fan_ctrl sysfs or pp_power_profile_mode for the CUSTOM profile will result in a null pointer dereference.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | < 6.12.43 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/5d8cc029e5595760c7d18c64632e8e40a86a9b2ePatch
- https://git.kernel.org/stable/c/a83ffafd02a7af59848755c109d544e3894af737Patch
- https://git.kernel.org/stable/c/cef79c18538e9ce2ca6e5b3fa95c38ec41dcd07aPatch
- https://git.kernel.org/stable/c/d524d40e3a6152a3ea1125af729f8cd8ca65efdePatch
FAQ
What is CVE-2025-38705?
CVE-2025-38705 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: fix null pointer access Writing a string without delimiters (' ', '\n', '\0') to the under gpu_od/fan_ctrl sysfs or pp...
How severe is CVE-2025-38705?
CVE-2025-38705 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-38705?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.