drm: zynqmp_dpsub: Always register bridge
CVE-2024-38664

7.8HIGH

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 June 2024

What is CVE-2024-38664?

A vulnerability in the Linux kernel related to the Direct Rendering Manager (DRM) functionality has been fixed, addressing a critical aspect of the Zynq UltraScale+ MPSoC. The issue arose from the failure to register the DRM bridge properly, which caused the zynqmp_dp_hpd_work_func to invoke drm_bridge_hpd_notify. This function relied on the initialization of hpd_mutex, which was not always ensured prior to the invocation. The resolution of this vulnerability prevents potential inconsistencies and guarantees proper initialization, thereby eliminating resulting lockdep warnings and improving the stability of the driver.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux eb2d64bfcc174919a921295a5327b99a3b8f4166 < 6ead3eccf67bc8318b1ce95ed879b2cc05b4fce9

Linux eb2d64bfcc174919a921295a5327b99a3b8f4166 < 603661357056b5e5ba6d86f505fbc936eff396ba

Linux eb2d64bfcc174919a921295a5327b99a3b8f4166

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.