Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2024-46714— drm/amd/display: Skip wbscl_set_scaler_filter if filter is null

AI Predicted 4.3 Difficulty: Theoretical EPSS 0.24% · P15

Affected Version Matrix 16

VendorProductVersion RangeStatus
LinuxLinux4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c< 0364f1f17a86d89dc39040beea4f099e60189f1baffected
4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c< c083c8be6bdd046049884bec076660d4ec9a19caaffected
4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c< 6d94c05a13fadd80c3e732f14c83b2632ebfaa50affected
4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c< 1726914cb17cedab233820d26b86764dc08857b4affected
4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c< e3a95f29647ae45d1ec9541cd7df64f40bf2120aaffected
4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c< 54834585e91cab13e9f82d3a811deb212a4df786affected
4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c< c4d31653c03b90e51515b1380115d1aedad925ddaffected
4.15affected
… +8 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2024-46714

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
drm/amd/display: Skip wbscl_set_scaler_filter if filter is null
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Skip wbscl_set_scaler_filter if filter is null Callers can pass null in filter (i.e. from returned from the function wbscl_get_filter_coeffs_16p) and a null check is added to ensure that is not the case. This fixes 4 NULL_RETURNS issues reported by Coverity.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未对传入的参数进行适当的空值检查。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 4562236b3bc0a28aeb6ee93b2d8a849a4c4e1c7c ~ 0364f1f17a86d89dc39040beea4f099e60189f1b -
LinuxLinux 4.15 -

II. Public POCs for CVE-2024-46714

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-46714

登录查看更多情报信息。

Patches & Fixes for CVE-2024-46714 (6)

Same Patch Batch · Linux · 2024-09-18 · 85 CVEs total

CVE-2024-467179.8 CRITICALnet/mlx5e: SHAMPO, Fix incorrect page release
CVE-2024-467369.8 CRITICALsmb: client: fix double put of @cfile in smb2_rename_path()
CVE-2024-467969.8 CRITICALsmb: client: fix double put of @cfile in smb2_set_path_size()
CVE-2024-467558.8 HIGHwifi: mwifiex: Do not return unused priv in mwifiex_get_priv_by_id()
CVE-2024-467167.8 HIGHdmaengine: altera-msgdma: properly free descriptor in msgdma_free_descriptor
CVE-2024-467777.8 HIGHudf: Avoid excessive partition lengths
CVE-2024-467817.8 HIGHnilfs2: fix missing cleanup on rollforward recovery error
CVE-2024-467927.8 HIGHriscv: misaligned: Restrict user access to kernel memory
CVE-2024-467987.8 HIGHASoC: dapm: Fix UAF for snd_soc_pcm_runtime object
CVE-2024-468007.8 HIGHsch/netem: fix use after free in netem_dequeue
CVE-2024-468017.8 HIGHlibfs: fix get_stashed_dentry()
CVE-2024-467887.8 HIGHtracing/osnoise: Use a cpumask to know what threads are kthreads
CVE-2024-467657.8 HIGHice: protect XDP configuration with a mutex
CVE-2024-467627.8 HIGHxen: privcmd: Fix possible access to a freed kirqfd instance
CVE-2024-467547.8 HIGHbpf: Remove tst_run from lwt_seg6local_prog_ops.
CVE-2024-467517.8 HIGHbtrfs: don't BUG_ON() when 0 reference count at btrfs_lookup_extent_info()
CVE-2024-467507.8 HIGHPCI: Add missing bridge lock to pci_bus_lock()
CVE-2024-467467.8 HIGHHID: amd_sfh: free driver_data after destroying hid device
CVE-2024-467407.8 HIGHbinder: fix UAF caused by offsets overwrite
CVE-2024-467417.8 HIGHmisc: fastrpc: Fix double free of 'buf' in error path

Showing top 20 of 85 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2024-46714

No comments yet


Leave a comment