CVE-2024-35942

MEDIUM

Linux Kernel 5.19-6.8.5 - Denial of Service via HDMI Clock Management

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx8mp-blk-ctrl: imx8mp_blk: Add fdcc clock to hdmimix domain According to i.MX8MP RM and HDMI ADD, the fdcc clock is part of hdmi rx verification IP that should not enable for HDMI TX. But actually if the clock is disabled before HDMI/LCDIF probe, LCDIF will not get pixel clock from HDMI PHY and print the error logs: [CRTC:39:crtc-2] vblank wait timed out WARNING: CPU: 2 PID: 9 at drivers/gpu/drm/drm_atomic_helper.c:1634 drm_atomic_helper_wait_for_vblanks.part.0+0x23c/0x260 Add fdcc clock to LCDIF and HDMI TX power domains to fix the issue.

Scores

CVSS v3 5.5
EPSS 0.0021
EPSS Percentile 11.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (11)
linux/Kernel 5.19.0 - 6.6.27linux
linux/Kernel 6.7.0 - 6.8.6linux
Linux/Linux < 5.19
Linux/Linux 5.19
Linux/Linux 556f5cf9568af772d494cff24ffaa7ea41e1ab40 - 697624ee8ad557ab5417f985d2c804241a7ad30d
Linux/Linux 556f5cf9568af772d494cff24ffaa7ea41e1ab40 - 9d3f959b426635c4da50dfc7b1306afd84d23e7c
Linux/Linux 556f5cf9568af772d494cff24ffaa7ea41e1ab40 - b13c0d871cd878ff53d25507ca535f59ed1f6a2a
Linux/Linux 6.6.27 - 6.6.*
Linux/Linux 6.8.6 - 6.8.*
Linux/Linux 6.9
... and 1 more
Published May 19, 2024
Tracked Since Feb 18, 2026