CVE-2024-41022
HIGH severity · CVSS 7
7CVSS HIGH
Summary
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix signedness bug in sdma_v4_0_process_trap_irq() The "instance" variable needs to be signed for the error handling to work.
Impact & exploitability
Attack vectorLocal
Attack complexityHigh
Privileges requiredLow
User interactionNone
Confidentiality impactHigh
Integrity impactHigh
Availability impactHigh
Exploit probability (EPSS)0%
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products we track (1)
Recommendation
Apply the vendor fix promptly. Open any affected product above for its exact safe version.
Official patch: https://git.kernel.org/stable/c/298e2ce222e712ffafa47288c5b2fcf33d72fda3 ↗
Additional information
- NVD record
- https://git.kernel.org/stable/c/298e2ce222e712ffafa47288c5b2fcf33d72fda3Patch
- https://git.kernel.org/stable/c/3dd9734878a9042f0358301d19a2b006a0fc4d06Patch
- https://git.kernel.org/stable/c/4edb0a84e6b32e75dc9bd6dd085b2c2ff19ec287Patch
- https://git.kernel.org/stable/c/544fa213f15d27f0370795845d55eeb3e00080d2Patch
- https://git.kernel.org/stable/c/6769a23697f17f9bf9365ca8ed62fe37e361a05aPatch
- https://git.kernel.org/stable/c/a5224e2123ce21102f346f518db80f004d5053a7Patch
- https://git.kernel.org/stable/c/d347c9a398bf7eab9408d207c0a50fb720f9de7dPatch
- https://git.kernel.org/stable/c/e8dfbf83a82bbfb9680921719fbe65e535af59eaPatch