Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-68334— platform/x86/amd/pmc: Add support for Van Gogh SoC

Quick assessment

Affected
Linux Linux
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于amd/pmc驱动对Van Gogh SoC支持不足,可能导致设备无法挂起和GPU驱动崩溃。

AI Predicted 3.3 Difficulty: Theoretical EPSS 0.18% · P8

Affected Version Matrix 10

VendorProduct Version RangeStatus
Linux Linux 83cbaf14275a30f14cf558b09389a1664b173858< 8af210df4f71dda74dc027da69372a028c6d4d84 affected
83cbaf14275a30f14cf558b09389a1664b173858< 996092ba6df66e2ac8cf9022007a7c8a412e7733 affected
83cbaf14275a30f14cf558b09389a1664b173858< 9654c56b111cd1415aca7e77f0c63c109453c409 affected
83cbaf14275a30f14cf558b09389a1664b173858< db4a3f0fbedb0398f77b9047e8b8bb2b49f355bb affected
5.14 affected
< 5.14 unaffected
6.6.130≤ 6.6.* unaffected
6.12.78≤ 6.12.* unaffected
… +2 more rows
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2025-68334

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
platform/x86/amd/pmc: Add support for Van Gogh SoC
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd/pmc: Add support for Van Gogh SoC The ROG Xbox Ally (non-X) SoC features a similar architecture to the Steam Deck. While the Steam Deck supports S3 (s2idle causes a crash), this support was dropped by the Xbox Ally which only S0ix suspend. Since the handler is missing here, this causes the device to not suspend and the AMD GPU driver to crash while trying to resume afterwards due to a power hang.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于amd/pmc驱动对Van Gogh SoC支持不足,可能导致设备无法挂起和GPU驱动崩溃。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Linux Linux 83cbaf14275a30f14cf558b09389a1664b173858 ~ 8af210df4f71dda74dc027da69372a028c6d4d84 -
Linux Linux 5.14 -

II. Public POCs for CVE-2025-68334

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-68334

登录查看更多情报信息。

Patches & Fixes for CVE-2025-68334 (2)

Same Patch Batch · Linux · 2025-12-22 · 12 CVEs total

CVE-2025-68337 7.5 HIGH jbd2: avoid bug_on in jbd2_journal_get_create_access() when file system corrupted
CVE-2025-68336 7.5 HIGH locking/spinlock/debug: Fix data-race in do_raw_write_lock
CVE-2025-68335 comedi: pcl818: fix null-ptr-deref in pcl818_ai_cancel()
CVE-2025-68333 sched_ext: Fix possible deadlock in the deferred_irq_workfn()
CVE-2025-68332 comedi: c6xdigio: Fix invalid PNP driver unregistration
CVE-2025-68331 usb: uas: fix urb unmapping issue when the uas device is remove during ongoing data transf
CVE-2025-68330 iio: accel: bmc150: Fix irq assumption regression
CVE-2025-68329 tracing: Fix WARN_ON in tracing_buffers_mmap_close for split VMAs
CVE-2025-68328 firmware: stratix10-svc: fix bug in saving controller data
CVE-2025-68327 usb: renesas_usbhs: Fix synchronous external abort on unbind
CVE-2025-68326 drm/xe/guc: Fix stack_depot usage

IV. Related Vulnerabilities

V. Comments for CVE-2025-68334

No comments yet


Leave a comment