CVE-2024-36897

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Atom Integrated System Info v2_2 for DCN35 New request from KMD/VBIOS in order to support new UMA carveout model. This fixes a null dereference from accessing Ctx->dc_bios->integrated_info while it was NULL. DAL parses through the BIOS and extracts the necessary integrated_info but was missing a case for the new BIOS version 2.3.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

10 Jun 2024, 19:21

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE CWE-476
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
First Time Linux
Linux linux Kernel
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: drm/amd/display: Atom Integrated System Info v2_2 para DCN35 Nueva solicitud de KMD/VBIOS para admitir el nuevo modelo de exclusión UMA. Esto corrige una desreferencia nula al acceder a Ctx->dc_bios->integrated_info mientras era NULL. DAL analiza el BIOS y extrae la información integrada necesaria, pero faltaba un caso para la nueva versión 2.3 del BIOS.
References () https://git.kernel.org/stable/c/02f5300f6827206f6e48a77f51e6264993695e5c - () https://git.kernel.org/stable/c/02f5300f6827206f6e48a77f51e6264993695e5c - Patch
References () https://git.kernel.org/stable/c/3c7013a87124bab54216d9b99f77e8b6de6fbc1a - () https://git.kernel.org/stable/c/3c7013a87124bab54216d9b99f77e8b6de6fbc1a - Patch
References () https://git.kernel.org/stable/c/7e3030774431eb093165a31baff040d35446fb8b - () https://git.kernel.org/stable/c/7e3030774431eb093165a31baff040d35446fb8b - Patch
References () https://git.kernel.org/stable/c/9a35d205f466501dcfe5625ca313d944d0ac2d60 - () https://git.kernel.org/stable/c/9a35d205f466501dcfe5625ca313d944d0ac2d60 - Patch
References () https://git.kernel.org/stable/c/c2797ec16d9072327e7578d09ee05bcab52fffd0 - () https://git.kernel.org/stable/c/c2797ec16d9072327e7578d09ee05bcab52fffd0 - Patch

30 May 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-30 16:15

Updated : 2024-07-03 02:03


NVD link : CVE-2024-36897

Mitre link : CVE-2024-36897

CVE.ORG link : CVE-2024-36897


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference