Linux kernel amdgpu power management (SMU/powerplay) (drm/amdgpu/powerplay/psm): A memory or reference-count leak
Impact
A memory or reference-count leak in the amdgpu power management (SMU/powerplay). Each pass through the affected path drops an allocation or a refcount on the floor. A tenant that loops the operation drives the node into memory exhaustion or pins objects that can never be freed, which on a long-lived GPU host shows up as creeping unreclaimable memory, failed allocations for other tenants, and eventually an OOM kill or a driver that will not unbind. Refcount leaks that wrap can also degrade into use-after-free. Upstream fix: drm/amdgpu/powerplay/psm: Fix memory leak in power state init
Who can reach it
Local. Reachable by a local user with root or with write access to the amdgpu sysfs/debugfs power interfaces; on most clusters that means a compromised node agent or a privileged DaemonSet, not a plain tenant pod. Not reachable over the network and not reachable from a container that has no GPU device node mapped in.
What to do
Kernel-side fix: this lands in mainline Linux and flows into distro kernels (RHEL/Rocky, Ubuntu HWE, SLES) and into AMD's out-of-tree DKMS amdgpu package shipped with ROCm. Patch the kernel or the DKMS module, then **reload the amdgpu module or reboot the node** - you cannot fix a running driver in place. Reloading amdgpu requires no process holding /dev/kfd or a render node, so in practice this is a cordon + drain + reboot per node. Plan it as a rolling maintenance across the fleet; there is no VBIOS flash, no SBIOS/AGESA step and no firmware update involved. Nodes running the ROCm DKMS stack often lag mainline by a release or two, so confirm the fix is actually present in the AMD driver version you deploy rather than assuming a new distro kernel covers it.
References
Related entries
- Linux kernel amdgpu kernel driver core (drm/amdgpu): A memory or reference-count leak in the amdgpu kernel driver coreCVE-2022-50718 · Linux kernel amdgpu kernel driver core (drm/amdgpu)Unscored
- Linux kernel amdgpu firmware, ACPI and IP-block initialisation (drm/amdgpu): A memory or reference-count leakCVE-2022-50760 · Linux kernel amdgpu firmware, ACPI and IP-block initialisation (drm/amdgpu)Unscored
- Linux kernel amdgpu power management (SMU/powerplay) (amdgpu/pm): An out-of-bounds access in the amdgpu powerCVE-2022-50781 · Linux kernel amdgpu power management (SMU/powerplay) (amdgpu/pm)Unscored
- Linux kernel amdgpu power management (SMU/powerplay) (drm/amdgpu): Missing or insufficient validation of user-suppliedCVE-2022-50844 · Linux kernel amdgpu power management (SMU/powerplay) (drm/amdgpu)Unscored
- Linux kernel amdgpu RAS / GPU reset and recovery path (drm/amdgpu): A race condition or locking defect in the amdgpuCVE-2023-53723 · Linux kernel amdgpu RAS / GPU reset and recovery path (drm/amdgpu)Unscored
- Linux kernel amdgpu display core (DC/DM) (drm/amd/display): An out-of-bounds access in the amdgpu display core (DC/DM)CVE-2023-53780 · Linux kernel amdgpu display core (DC/DM) (drm/amd/display)Unscored
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.