CVE-2025-40334: Linux

High severity, CVSS 7.3. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: validate userq buffer virtual address and size It needs to validate the userq object virtual address to determine whether it is residented in a valid vm mapping.

Affected products

  • Linux Linux: from 6.16, before 6.17.8 (fixed in 6.17.8)

Published 2025-12-09. Last modified 2026-07-30.