PT-2024-11359 · Linux+2 · Linux Kernel+2
Published
2021-09-23
·
Updated
2024-12-26
·
CVE-2021-47362
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The issue is related to the Linux kernel's drm/amd/pm module, where the intermediate power state for SI is not updated correctly. During the initialization process, the set power state function is called to transition to the final power state, but it refers to values from the current state, which may not be populated, resulting in a NULL pointer dereference. This issue is visible on platforms where PCI speed change is supported through the ACPI ATCS method, and the logic to query ATCS-support was broken on certain platforms. The issue became apparent when the broken ATCS-support logic was fixed with a specific commit.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Suse