PT-2024-30760 · Linux+2 · Linux Kernel+2

Alex Deucher

+3

·

Published

2024-06-03

·

Updated

2026-03-14

·

CVE-2024-43901

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A NULL pointer dereference vulnerability has been resolved in the Linux kernel, specifically in the drm/amd/display component. The issue occurs when the color log tries to read the gamut remap information from DCN401, which is not initialized in the dcn401 dpp funcs, leading to a null pointer dereference. This vulnerability is addressed by adding a proper guard to access the gamut remap callback in case the specific ASIC did not implement this function. The vulnerability can be triggered by running the command cat /sys/kernel/debug/dri/0/amdgpu dm dtn log.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2025-12647
AZL-48204
AZL-48240
BDU:2025-03093
CVE-2024-43901
ECHO-2085-B29E-395F

Affected Products

Alt Linux
Debian
Linux Kernel