CVE-2024-46810

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Sep 27, 2024
Updated: Oct 4, 2024
CWE ID 476

Summary

CVE-2024-46810 is a vulnerability affecting the Linux kernel's drm/bridge subsystem. Specifically, in the tc358767 driver, there is a flaw that allows for a NULL pointer dereference. This issue occurs when the connector is not fully initialized before signaling an HPD event via IRQ. This vulnerability could potentially lead to serious consequences if exploited. It has been resolved in a recent Linux kernel update.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share