PT-2024-33751 · Linux+4 · Linux Kernel+4

Published

2024-07-31

·

Updated

2026-05-26

·

CVE-2024-49910

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: A null pointer dereference issue has been resolved in the Linux kernel. The problem occurred because the set output gamma function pointer was being dereferenced without a null check in the dcn401 set output transfer func function. This could have led to a null pointer dereference if set output gamma was null. The issue has been fixed by adding a null check for set output gamma before it is dereferenced.
Recommendations: To resolve this issue, update the Linux kernel to a version that includes the fix for the null pointer dereference in the dcn401 set output transfer func function. As a temporary workaround, consider disabling the dcn401 set output transfer func function until a patch is available. However, since the exact affected versions are not specified, it is crucial to ensure that the update includes the necessary patch for the drm/amd/display component. At the moment, there is no information about a newer version that contains a fix for this vulnerability, so users should monitor for updates from the Linux kernel maintainers.

Exploit

Fix

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-17211
ALT-PU-2025-12647
AZL-51037
AZL-51041
BDU:2025-13866
CVE-2024-49910
ECHO-9B28-459E-BA36
OPENSUSE-SU-2024:14500-1
OPENSUSE-SU-2025:14705-1
USN-7170-1
USN-7276-1
USN-7277-1

Affected Products

Alt Linux
Debian
Linuxmint
Linux Kernel
Ubuntu