Home

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add null check for 'afb' in amdgpu_dm_plane_handle_cursor_update (v2) This commit adds a null check for the 'afb' variable in the amdgpu_dm_plane_handle_cursor_update function. Previously, 'afb' was assumed to be null, but was used later in the code without a null check. This could potentially lead to a null pointer dereference. Changes since v1: - Moved the null check for 'afb' to the line where 'afb' is used. (Alex) Fixes the below: drivers/gpu/drm/amd/amdgpu/../display/amdgpu_dm/amdgpu_dm_plane.c:1298 amdgpu_dm_plane_handle_cursor_update() error: we previously assumed 'afb' could be null (see line 1252)

PUBLISHED Reserved 2024-10-21 | Published 2024-10-21 | Updated 2025-11-03 | Assigner Linux

Product status

Default status
unaffected

4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c (git) before bd0e24e5e608ccb9fdda300bb974496d6d8cf57d
affected

4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c (git) before 75839e2365b666ff4e1b9047e442cab138eac4f6
affected

4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c (git) before 9132882eaae4d21d2fc5843b3308379a481ebdf0
affected

4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c (git) before e4e26cbe34d7c1c1db5fb7b3101573c29866439f
affected

4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c (git) before cd9e9e0852d501f169aa3bb34e4b413d2eb48c37
affected

Default status
affected

4.15
affected

Any version before 4.15
unaffected

6.1.113 (semver)
unaffected

6.6.55 (semver)
unaffected

6.10.14 (semver)
unaffected

6.11.3 (semver)
unaffected

6.12 (original_commit_for_fix)
unaffected

References

lists.debian.org/debian-lts-announce/2025/01/msg00001.html

git.kernel.org/...c/bd0e24e5e608ccb9fdda300bb974496d6d8cf57d

git.kernel.org/...c/75839e2365b666ff4e1b9047e442cab138eac4f6

git.kernel.org/...c/9132882eaae4d21d2fc5843b3308379a481ebdf0

git.kernel.org/...c/e4e26cbe34d7c1c1db5fb7b3101573c29866439f

git.kernel.org/...c/cd9e9e0852d501f169aa3bb34e4b413d2eb48c37

cve.org (CVE-2024-49905)

nvd.nist.gov (CVE-2024-49905)

Download JSON