CVE-2024-26648

MEDIUM

Linux Kernel < 6.6.15, 6.6.0-6.6.15, 6.7.0-6.7.3 - NULL Pointer Dereference in edp_setup_replay

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix variable deferencing before NULL check in edp_setup_replay() In edp_setup_replay(), 'struct dc *dc' & 'struct dmub_replay *replay' was dereferenced before the pointer 'link' & 'replay' NULL check. Fixes the below: drivers/gpu/drm/amd/amdgpu/../display/dc/link/protocols/link_edp_panel_control.c:947 edp_setup_replay() warn: variable dereferenced before check 'link' (see line 933)

Scores

CVSS v3 5.5
EPSS 0.0022
EPSS Percentile 12.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (11)
linux/Kernel 6.6.0 - 6.6.15linux
linux/Kernel 6.7.0 - 6.7.3linux
Linux/Linux < 6.6
Linux/Linux 6.6
Linux/Linux 6.6.15 - 6.6.*
Linux/Linux 6.7.3 - 6.7.*
Linux/Linux 6.8
Linux/Linux c7ddc0a800bc9f681a18c3bdd9f06b61adfabc11 - 22ae604aea14756954e1c00ae653e34d2afd2935
Linux/Linux c7ddc0a800bc9f681a18c3bdd9f06b61adfabc11 - 7073934f5d73f8b53308963cee36f0d389ea857c
Linux/Linux c7ddc0a800bc9f681a18c3bdd9f06b61adfabc11 - c02d257c654191ecda1dc1af6875d527e85310e7
... and 1 more
Published Mar 26, 2024
Tracked Since Feb 18, 2026