CyberRota Analysis
AI-GeneratedA bounds-checking vulnerability in the Linux kernel's `allocate_sdma_queue` function could allow an attacker to specify an out-of-bounds sdma queue ID, potentially leading to memory corruption or denial of service. This issue primarily affects systems utilizing the amdkfd driver for AMD GPUs, particularly those employing CRIU for process checkpointing and restoration. Organizations using affected Linux distributions with AMD hardware should prioritize patching to mitigate potential exploitation risks.
Original NVD Description
In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Check bounds for allocate_sdma_queue restore_sdma_id allocate_sdma_queue has an option where the sdma queue id can be specified (used by CRIU). We weren't bounds-checking that value. Confirm it's less than the maximum number of queues.