CVE-2024-46818

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-46818
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-46818.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-46818
Downstream
Related
Published
2024-09-27T12:35:59.187Z
Modified
2025-11-28T02:34:05.581489Z
Summary
drm/amd/display: Check gpio_id before used as array index
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amd/display: Check gpio_id before used as array index

[WHY & HOW] GPIOIDUNKNOWN (-1) is not a valid value for array index and therefore should be checked in advance.

This fixes 5 OVERRUN issues reported by Coverity.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/46xxx/CVE-2024-46818.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c
Fixed
8520fdc8ecc38f240a8e9e7af89cca6739c3e790
Fixed
40c2e8bc117cab8bca8814735f28a8b121654a84
Fixed
0184cca30cad74d88f5c875d4e26999e26325700
Fixed
276e3fd93e3beb5894eb1cc8480f9f417d51524d
Fixed
08e7755f754e3d2cef7d3a7da538d33526bd6f7c
Fixed
3d4198ab612ad48f73383ad3bb5663e6f0cdf406
Fixed
2a5626eeb3b5eec7a36886f9556113dd93ec8ed6

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
5.4.284
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.226
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.167
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.109
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.50
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.10.9