CVE-2024-56542

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Dec 27, 2024
Updated: Jan 14, 2025
CWE ID 401

Summary

CVE-2024-56542: A vulnerability in the Linux kernel's drm/amd driver has been addressed. This issue causes a memory leak when the driver is removed, resulting in a failed communication with VBIOS DMUB upon re-insertion of the driver. This occurs due to the PSP policy retaining the driver loaded version on subsequent boots, while the VBIOS dmub is not active during the second insertion. The memory leak can be resolved by aborting further communication attempts.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share