CVE-2023-52485

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Feb 29, 2024
Updated: Jan 9, 2025

Summary

CVE-2023-52485 is a vulnerability in the Linux kernel that affects the drm/amd/display subsystem. If an attacker is able to exploit this issue, they can cause the system to hang while attempting to send commands to the Display Management Controller Unit Block (DMCUB), which is not yet powered on. To mitigate this issue, functions that execute within a DC context or DC lock have been modified to exit idle power optimizations before and after command submission. The DM will need to manage the enter/exit sequencing manually for DM direct submissions. Direct submission of DMCUB commands within the DM execution helper is not allowed to prevent deadlocks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share