CVE-2024-46870
CVSS 3.1 Score 4.7 of 10 (medium)
Details
Summary
CVE-2024-46870 is a vulnerability affecting the Linux kernel's drm/amd/display component. This issue arises when the DMCUB (Display Subsystem Common Unified Buffer) timeout for DCN35 is not disabled, leading to potential race conditions when the NIU port is not disabled or register accesses time out. The old ASIC policy of continuing with logging diagnostic errors while in an undefined state can result in a system hang. To mitigate the risk, the timeout on DCN35 needs to be disabled until the root cause of longer-than-expected accesses is identified. The risk of taking too long at higher IRQ levels and causing a system watchdog timeout is minimal due to the waits occurring only at lower interrupt levels.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.