CVE-2024-56775

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Jan 8, 2025
Updated: Jan 9, 2025
CWE ID 415
CWE ID 401

Summary

CVE-2024-56775 is a vulnerability in the Linux kernel's drm/amd/display subsystem. It arises from a flaw in the mechanism used to backup and restore plane states, which fails to maintain the plane's refcount. This can lead to memory leaks if the refcount was supposed to decrease or double free/invalid memory accesses if the refcount was meant to increase. The issue has been addressed by restoring the current refcount when planes' states are being restored.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share