VulnerabilityModified
CVE-2024-49897
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check phantom_stream before it is used dcn32_enable_phantom_stream can return null, so returned value must be checked before used.
MEDIUM 5.5EPSS 0.24%
Does this matter?
Lower severity and a low EPSS score (0.24%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check phantom_stream before it is used dcn32_enable_phantom_stream can return null, so returned value must be checked before used. This fixes 1 NULL_RETURNS issue reported by Coverity.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.24% probability · 15th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-476
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/1decf695ce08e23d9ded6ce83d121b2282ce9899Patch
- https://git.kernel.org/stable/c/3718a619a8c0a53152e76bb6769b6c414e1e83f4Patch
- https://git.kernel.org/stable/c/3ba1219e299ab5462b5cb374c2fa2a67af0ea190Patch
- https://git.kernel.org/stable/c/d247af7c5dbf143ad6be8179bb1550e76d6af57e
- https://git.kernel.org/stable/c/db1d7e1794fed62ee16d6a72a85997bb069e2e27
- https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.