cbcvebase.
CVE-2024-38548
published 2024-06-19

CVE-2024-38548: In the Linux kernel, the following vulnerability has been resolved: drm: bridge: cdns-mhdp8546: Fix possible null pointer dereference In…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.4th percentile
In the Linux kernel, the following vulnerability has been resolved: drm: bridge: cdns-mhdp8546: Fix possible null pointer dereference In cdns_mhdp_atomic_enable(), the return value of drm_mode_duplicate() is assigned to mhdp_state->current_mode, and there is a dereference of it in drm_mode_set_name(), which will lead to a NULL pointer dereference on failure of drm_mode_duplicate(). Fix this bug add a check of mhdp_state->current_mode.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux>= fb43aa0acdfd600c75b8c877bdf9f6e9893ffc9b < 85d1a27402f81f2e04b0e67d20f749c2a14edbb385d1a27402f81f2e04b0e67d20f749c2a14edbb3
linuxlinux>= fb43aa0acdfd600c75b8c877bdf9f6e9893ffc9b < 89788cd9824c28ffcdea40232c458233353d189689788cd9824c28ffcdea40232c458233353d1896
linuxlinux>= fb43aa0acdfd600c75b8c877bdf9f6e9893ffc9b < ca53b7efd4ba6ae92fd2b3085cb099c745e96965ca53b7efd4ba6ae92fd2b3085cb099c745e96965
linuxlinux>= fb43aa0acdfd600c75b8c877bdf9f6e9893ffc9b < dcf53e6103b26e7458be71491d0641f49fbd5840dcf53e6103b26e7458be71491d0641f49fbd5840
linuxlinux>= fb43aa0acdfd600c75b8c877bdf9f6e9893ffc9b < 32fb2ef124c3301656ac6c789a2ef35ef69a66da32fb2ef124c3301656ac6c789a2ef35ef69a66da
linuxlinux>= fb43aa0acdfd600c75b8c877bdf9f6e9893ffc9b < 47889711da20be9b43e1e136e5cb68df37cbcc7947889711da20be9b43e1e136e5cb68df37cbcc79
linuxlinux>= fb43aa0acdfd600c75b8c877bdf9f6e9893ffc9b < 935a92a1c400285545198ca2800a4c6c519c650a935a92a1c400285545198ca2800a4c6c519c650a
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-40.406.8.0-40.40
linuxlinux_kernel>= 5.10 < 5.10.2195.10.219
linuxlinux_kernel>= 5.11 < 5.15.1615.15.161
linuxlinux_kernel>= 5.16 < 6.1.936.1.93
linuxlinux_kernel>= 6.2 < 6.6.336.6.33
linuxlinux_kernel>= 6.7 < 6.8.126.8.12
linuxlinux_kernel>= 6.9 < 6.9.36.9.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv6.5MEDIUM
vendor_ubuntu6.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.