GPU VulnDB

Database/NVIDIA / GPU stack

Linux amdgpu: unbounded FRU PIA TLV walk reads out of bounds on malformed EEPROM data

CVSS 7.7CVE-2026-97428NVIDIA / GPU stackcurated

Impact

The amdgpu driver's FRU (board inventory) parser walked TLV records without bounding reads against the actual EEPROM data length, so truncated or malformed FRU content causes out-of-bounds reads in kernel context. On an AMD Instinct node this parsing runs during GPU probe, so the failure mode is kernel memory disclosure into board-info surfaces or a driver/boot-time crash on a node that was otherwise healthy. Reaching it requires influence over the FRU EEPROM content rather than tenant workload input, which keeps the practical exposure low on a fleet with intact hardware, but a re-flashed or damaged board can take the node down on every boot. Fixed by replacing the open-coded walk with bounded fru_pia_advance()/fru_pia_copy_field() helpers.

Who can reach it

Local and hardware-adjacent: requires malformed or truncated FRU EEPROM data on the GPU board, not tenant-reachable input. No remote or unauthenticated path is described in the record.

What to do

Take the stable kernel update carrying the bounded FRU parsing helpers (three stable commits referenced). The amdgpu module cannot be reloaded under live GPU workloads in practice, so this is a drain-and-reboot per GPU node, scheduled with normal kernel maintenance rather than urgently given the limited reachability.

References

Related entries

All NVIDIA / GPU stack entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.