cbcvebase.
CVE-2024-39471
published 2024-06-25

CVE-2024-39471: In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add error handle to avoid out-of-bounds if the sdma_v4_0_irq_id_to_seq return…

PriorityP427high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.24%
15.0th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add error handle to avoid out-of-bounds if the sdma_v4_0_irq_id_to_seq return -EINVAL, the process should be stop to avoid out-of-bounds read, so directly return -EINVAL.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux>= 7d0e6329dfdcfe48311f8888d6a8dfa73bee00a9 < 5594971e02764aa1c8210ffb838cb4e7897716e85594971e02764aa1c8210ffb838cb4e7897716e8
linuxlinux>= 7d0e6329dfdcfe48311f8888d6a8dfa73bee00a9 < 8112fa72b7f139052843ff484130d6f97e9f052f8112fa72b7f139052843ff484130d6f97e9f052f
linuxlinux>= 7d0e6329dfdcfe48311f8888d6a8dfa73bee00a9 < ea906e9ac61e3152bef63597f2d9f4a812fc346aea906e9ac61e3152bef63597f2d9f4a812fc346a
linuxlinux>= 7d0e6329dfdcfe48311f8888d6a8dfa73bee00a9 < 011552f29f20842c9a7a21bffe1f6a2d6457ba46011552f29f20842c9a7a21bffe1f6a2d6457ba46
linuxlinux>= 7d0e6329dfdcfe48311f8888d6a8dfa73bee00a9 < 5b0a3dc3e87821acb80e841b464d335aff2426915b0a3dc3e87821acb80e841b464d335aff242691
linuxlinux>= 7d0e6329dfdcfe48311f8888d6a8dfa73bee00a9 < 0964c84b93db7fbf74f357c1e20957850e092db30964c84b93db7fbf74f357c1e20957850e092db3
linuxlinux>= 7d0e6329dfdcfe48311f8888d6a8dfa73bee00a9 < 8b2faf1a4f3b6c748c0da36cda865a226534d5208b2faf1a4f3b6c748c0da36cda865a226534d520
linuxlinux_kernel< 5.4.2785.4.278
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 5.4.0-192.2125.4.0-192.212
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-44.446.8.0-44.44
linuxlinux_kernel>= 5.11 < 5.15.1615.15.161
linuxlinux_kernel>= 5.16 < 6.1.946.1.94
linuxlinux_kernel>= 5.5 < 5.10.2195.10.219
linuxlinux_kernel>= 6.2 < 6.6.346.6.34
linuxlinux_kernel>= 6.7 < 6.9.56.9.5

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.