cbcvebase.
CVE-2024-27029
published 2024-05-01

CVE-2024-27029: In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix mmhub client id out-of-bounds access Properly handle cid 0x140.

PriorityP428high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.28%
20.5th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix mmhub client id out-of-bounds access Properly handle cid 0x140.

Affected

10 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.7.12-1 (forky)linux 6.7.12-1 (forky)
linuxlinux
linuxlinux>= aba2be41470a11629c8378c3651323d7e5416df6 < e1e076bda4fd6378ae650f2c6ef1a4ff93c5aea5e1e076bda4fd6378ae650f2c6ef1a4ff93c5aea5
linuxlinux>= aba2be41470a11629c8378c3651323d7e5416df6 < 1f24b3040f2b6ffcb97151fabb3070328254d9231f24b3040f2b6ffcb97151fabb3070328254d923
linuxlinux>= aba2be41470a11629c8378c3651323d7e5416df6 < 6540ff6482c1a5a6890ae44b23d0852ba1986d9e6540ff6482c1a5a6890ae44b23d0852ba1986d9e
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.8.0-35.356.8.0-35.35
linuxlinux_kernel>= 6.7 < 6.7.116.7.11
linuxlinux_kernel>= 6.8 < 6.8.26.8.2

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1LOW
vendor_redhat7.1HIGH
vendor_ubuntu6.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.