Wind River Support Network

HomeDefectsLIN1023-11596
Fixed

LIN1023-11596 : Security Advisory - linux - CVE-2024-58052

Created: Mar 6, 2025    Updated: Mar 24, 2025
Resolved Date: Mar 24, 2025
Found In Version: 10.23.30.1
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: Fix potential NULL pointer dereference in atomctrl_get_smc_sclk_range_table

The function atomctrl_get_smc_sclk_range_table() does not check the return
value of smu_atom_get_data_table(). If smu_atom_get_data_table() fails to
retrieve SMU_Info table, it returns NULL which is later dereferenced.

Found by Linux Verification Center (linuxtesting.org) with SVACE.

In practice this should never happen as this code only gets called
on polaris chips and the vbios data table will always be present on
those chips.

CREATE(Triage):(User=admin) CVE-2024-58052 (https://nvd.nist.gov/vuln/detail/CVE-2024-58052)

CVEs


Live chat
Online