Database/Control plane, storage & DevOps
Linux cpufreq/amd-pstate - memory leak on CPU EPP exit: The amd-pstate driver leaks its per-CPU allocation when a CPU's
Impact
The amd-pstate driver leaks its per-CPU allocation when a CPU's energy-performance-preference path exits. Each CPU hotplug or governor transition drops memory on the floor - slow, but on a long-lived host that cycles power states under variable AI load it accumulates into unreclaimable kernel memory and eventually pressures every workload on the node.
Who can reach it
Local, driven by CPU hotplug and power-governor transitions rather than by an attacker directly - though a tenant that can influence CPU frequency governors can accelerate it.
What to do
Fixed in the Linux kernel. Distro kernel update plus reboot; no firmware step. Group it with the other amd-pstate fixes rather than scheduling a window for it alone.
References
Related entries
- Linux cpufreq/amd-pstate - unchecked cpufreq_cpu_get() return value: cpufreq_cpu_get() can return NULL and amd-pstateCVE-2024-50009 · Linux cpufreq/amd-pstate - unchecked cpufreq_cpu_get() return valueMedium
- Linux platform/x86/amd/pmc - IRQ1 wakeup disabled unconditionally: The AMD PMC driver disabled IRQ1 wakeup in casesCVE-2025-21645 · Linux platform/x86/amd/pmc - IRQ1 wakeup disabled unconditionallyMedium
- Linux cpufreq/amd-pstate - cpufreq_policy reference counting: amd_pstate_update_limits() takes a cpufreq_policyCVE-2025-21841 · Linux cpufreq/amd-pstate - cpufreq_policy reference countingMedium
- Linux cpufreq/amd-pstate - missing NULL check in amd_pstate_update: amd_pstate_update() dereferences the cpufreq policyCVE-2025-23137 · Linux cpufreq/amd-pstate - missing NULL check in amd_pstate_updateMedium
- Linux x86/CPU/AMD - INVLPGB on Zen 2 (Cyan Skillfish): Using broadcast TLB invalidation (INVLPGB) on affected Zen 2CVE-2025-38518 · Linux x86/CPU/AMD - INVLPGB on Zen 2 (Cyan Skillfish)Medium
- SPDK (Storage Performance Development Kit) 25.05 - NVMe-oF target, lib/nvmf: A buffer overflow in the NVMe-oF targetCVE-2025-57275 · SPDK (Storage Performance Development Kit) 25.05 - NVMe-oF target, lib/nvmfMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.