GPU Cooling Implementation in Linux Kernel for Qualcomm Devices
CVE-2025-38093

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
2 July 2025

What is CVE-2025-38093?

A vulnerability has been identified in the Linux kernel related to inadequate cooling mechanisms for GPUs in Qualcomm devices. Unlike CPUs, which commonly utilize thermal throttling at high temperatures, GPUs can reach critical shutdown temperatures of 120°C under heavy load without regulation. This vulnerability may result in hardware damage and application failures. The fix involves implementing GPU cooling similar to existing ACPI table configurations, enforcing speed throttling at temperatures exceeding 95°C and regularly polling the temperature every 200ms to prevent overheating.

Affected Version(s)

Linux 721e38301b79a6ee8375cb0ebd586699a7f353e3

Linux 721e38301b79a6ee8375cb0ebd586699a7f353e3

Linux 721e38301b79a6ee8375cb0ebd586699a7f353e3

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-38093 : GPU Cooling Implementation in Linux Kernel for Qualcomm Devices