In the Linux kernel, the following vulnerability has been resolved:
drm/amd/pm: bound pp_dpm_set_pp_table() memcpy
The powerplay path allocates hardcode_pp_table once with kmemdup(...,
soft_pp_table_size). memcpy(..., size) used the sysfs store count (up to
PAGE_SIZE) with no upper bound, causing heap overflow. Reject
writes where size exceeds soft_pp_table_size.
CVE-2026-97427
NONE
EPSS 0.18%
Updated Sep 25, 2026
AMD
https://git.kernel.org/stable/c/3334985f8b4c7c637a829744c81518ad9a671bcb
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/43d2ab8408f9f468b232350c74160ae21e763020
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/f193e71fa9fab2e68ef85201b106e8f580d3a25b
416baaa9-dc9f-4396-8d5f-8c081fb06d67
CVE Details
CVE ID
CVE-2026-97427
Published Date
Sep 24, 2026
Vendor
AMD
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.18%
Likelihood of exploitation in next 30 days
Percentile:
7.1th percentile (higher than 7.1% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory