CVE-2024-36897

Source
https://cve.org/CVERecord?id=CVE-2024-36897
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-36897.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-36897
Downstream
Related
Published
2024-05-30T15:29:01.417Z
Modified
2026-03-20T12:36:51.680159Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
drm/amd/display: Atom Integrated System Info v2_2 for DCN35
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amd/display: Atom Integrated System Info v2_2 for DCN35

New request from KMD/VBIOS in order to support new UMA carveout model. This fixes a null dereference from accessing Ctx->dcbios->integratedinfo while it was NULL.

DAL parses through the BIOS and extracts the necessary integrated_info but was missing a case for the new BIOS version 2.3.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/36xxx/CVE-2024-36897.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c
Fixed
3c7013a87124bab54216d9b99f77e8b6de6fbc1a
Fixed
02f5300f6827206f6e48a77f51e6264993695e5c
Fixed
7e3030774431eb093165a31baff040d35446fb8b
Fixed
c2797ec16d9072327e7578d09ee05bcab52fffd0
Fixed
9a35d205f466501dcfe5625ca313d944d0ac2d60

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-36897.json"