CVE-2024-49917

Source
https://cve.org/CVERecord?id=CVE-2024-49917
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-49917.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-49917
Downstream
Related
Published
2024-10-21T18:01:44.295Z
Modified
2026-05-13T03:52:49.130782337Z
Summary
drm/amd/display: Add NULL check for clk_mgr and clk_mgr->funcs in dcn30_init_hw
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amd/display: Add NULL check for clkmgr and clkmgr->funcs in dcn30inithw

This commit addresses a potential null pointer dereference issue in the dcn30_init_hw function. The issue could occur when dc->clk_mgr or dc->clk_mgr->funcs is null.

The fix adds a check to ensure dc->clk_mgr and dc->clk_mgr->funcs is not null before accessing its functions. This prevents a potential null pointer dereference.

Reported by smatch: drivers/gpu/drm/amd/amdgpu/../display/dc/hwss/dcn30/dcn30hwseq.c:789 dcn30inithw() error: we previously assumed 'dc->clkmgr' could be null (see line 628)

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/49xxx/CVE-2024-49917.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c
Fixed
23cb6139543580dc36743586ca86fbb3f7ab2c9d
Fixed
205e3b96cc9aa9211fd2c849a16245cf236b2d36
Fixed
5443c83eb8fd2f88c71ced38848fbf744d6206a2
Fixed
56c326577971adc3a230f29dfd3aa3abdd505f5d
Fixed
cba7fec864172dadd953daefdd26e01742b71a6a

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-49917.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
6.1.120
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.64
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.10.14
Type
ECOSYSTEM
Events
Introduced
6.11.0
Fixed
6.11.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-49917.json"