PT-2024-11359 · Linux+2 · Linux Kernel+2

Published

2021-09-23

·

Updated

2024-12-26

·

CVE-2021-47362

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to the Linux kernel's drm/amd/pm module, where the intermediate power state for SI is not updated correctly. During the initialization process, the set power state function is called to transition to the final power state, but it refers to values from the current state, which may not be populated, resulting in a NULL pointer dereference. This issue is visible on platforms where PCI speed change is supported through the ACPI ATCS method, and the logic to query ATCS-support was broken on certain platforms. The issue became apparent when the broken ATCS-support logic was fixed with a specific commit.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-07515
CVE-2021-47362
OESA-2024-1692
OPENSUSE-SU-2024_2189-1
SUSE-SU-2024:1979-1
SUSE-SU-2024:1983-1
SUSE-SU-2024:2008-1
SUSE-SU-2024:2011-1
SUSE-SU-2024:2019-1
SUSE-SU-2024:2184-1
SUSE-SU-2024:2189-1
SUSE-SU-2024:2190-1

Affected Products

Astra Linux
Linux Kernel
Suse