PT-2024-30768 · Linux+6 · Linux Kernel+6

Published

2024-05-17

·

Updated

2026-03-14

·

CVE-2024-43909

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.50
Description A null pointer dereference vulnerability has been resolved in the Linux kernel. The issue was related to the drm/amdgpu/pm module, where a null pointer (hwmgr->backend) was being passed to the smu7 update edc leakage table function. This vulnerability has been fixed by optimizing the code to avoid passing null pointers.
Recommendations To resolve this issue, update the Linux kernel to version 6.6.50 or later. As a temporary workaround, consider disabling the smu7 update edc leakage table function until a patch is available. Restrict access to the drm/amdgpu/pm module to minimize the risk of exploitation. Avoid using the hwmgr->backend pointer in the affected code until the issue is resolved.

Exploit

Fix

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2024-11524
ALT-PU-2024-11855
ALT-PU-2024-11863
ALT-PU-2024-13121
ALT-PU-2024-13979
ALT-PU-2024-14046
AZL-48249
BDU:2025-01915
CVE-2024-43909
DLA-4008-1
MGASA-2024-0309
MGASA-2024-0310
OESA-2024-2124
OPENSUSE-SU-2024_3190-1
OPENSUSE-SU-2024_3209-1
OPENSUSE-SU-2024_3483-1
SUSE-SU-2024:3190-1
SUSE-SU-2024:3194-1
SUSE-SU-2024:3195-1
SUSE-SU-2024:3209-1
SUSE-SU-2024:3383-1
SUSE-SU-2024:3483-1
SUSE-SU-2025:20044-1
SUSE-SU-2025:20047-1
USN-7100-1
USN-7100-2
USN-7123-1
USN-7144-1
USN-7154-1
USN-7154-2
USN-7155-1
USN-7156-1
USN-7194-1
USN-7196-1

Affected Products

Alt Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu