cbcvebase.
CVE-2024-46816
published 2024-09-27

CVE-2024-46816: In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Stop amdgpu_dm initialize when link nums greater than max_links [Why]…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.27%
18.2th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Stop amdgpu_dm initialize when link nums greater than max_links [Why] Coverity report OVERRUN warning. There are only max_links elements within dc->links. link count could up to AMDGPU_DM_MAX_DISPLAY_INDEX 31. [How] Make sure link count less than max_links.

Affected

42 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.135-1 (bookworm)linux 6.1.135-1 (bookworm)
debianlinux-6.1< linux 6.1.135-1 (bookworm)linux 6.1.135-1 (bookworm)
linuxlinux
linuxlinux>= 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c < e2411b6abf6e5d6c33d0450846673cdf536f0ba4e2411b6abf6e5d6c33d0450846673cdf536f0ba4
linuxlinux>= 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c < e3cd0d8362de47f613bfdf315b3f3a9ab71e66bfe3cd0d8362de47f613bfdf315b3f3a9ab71e66bf
linuxlinux>= 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c < 13080d052c995aee14695a5b740c245121eb2bcc13080d052c995aee14695a5b740c245121eb2bcc
linuxlinux>= 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c < c84632096722fd31251f0957fafc9e90d9a247fdc84632096722fd31251f0957fafc9e90d9a247fd
linuxlinux>= 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c < 36c39a8dcce210649f2f45f252abaa09fcc1ae8736c39a8dcce210649f2f45f252abaa09fcc1ae87
linuxlinux>= 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c < cf8b16857db702ceb8d52f9219a4613363e2b1cfcf8b16857db702ceb8d52f9219a4613363e2b1cf
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.135-16.1.135-1
linuxlinux_kernel>= 0 < 6.10.9-16.10.9-1
linuxlinux_kernel>= 0 < 6.10.9-16.10.9-1
linuxlinux_kernel>= 0 < 5.15.0-144.1575.15.0-144.157
linuxlinux_kernel>= 0 < 6.8.0-50.516.8.0-50.51
linuxlinux_kernel>= 6.10 < 6.10.96.10.9
ubuntulinux
ubuntulinux-aws
ubuntulinux-aws-5.4
ubuntulinux-aws-fips
ubuntulinux-aws-hwe
ubuntulinux-azure
ubuntulinux-azure-4.15
ubuntulinux-azure-5.4
ubuntulinux-azure-fips

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.