CVE-2025-21987: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: init return value in amdgpu_ttm_clear_buffer Otherwise an uninitialized value can be returned if amdgpu_res_cleared returns true for all regions. Possibly closes: https://gitlab.freedesktop.org/drm/amd/-/issues/3812 (cherry picked from commit 7c62aacc3b452f73a1284198c81551035fac6d71)

Affected products

  • Linux Linux Kernel: from 6.10, before 6.12.18 (fixed in 6.12.18); from 6.13, before 6.13.6 (fixed in 6.13.6); version 6.14 only

Published 2025-04-02. Last modified 2026-06-17.