GPU VulnDB

Database/Kernel, userspace & hypervisor

AMD Radeon Kernel Mode driver - Escape 0x2000c00 call handler: MULTI-TENANT ISOLATION: A low-privileged attacker can

CVE-2020-12964Kernel, userspace & hypervisorcurated

Impact

MULTI-TENANT ISOLATION: A low-privileged attacker can drive the Radeon kernel-mode driver's Escape 0x2000c00 handler into privilege escalation or denial of service. Escape call handlers are the driver's catch-all ioctl surface and historically its weakest - a low-privilege caller reaching kernel-mode escalation is the pattern that makes GPU device nodes dangerous to hand out.

Who can reach it

Local, low privilege - reachable by an ordinary user with the GPU device open.

What to do

Update the AMD graphics driver and reload or reboot. Note this is the Windows kernel-mode driver surface; Linux ROCm fleets are not affected by this specific handler, though the lesson about escape/ioctl surfaces carries over.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.