Lucene search

K
vulnrichmentLinuxVULNRICHMENT:CVE-2024-38552
HistoryJun 19, 2024 - 1:35 p.m.

CVE-2024-38552 drm/amd/display: Fix potential index out of bounds in color transformation function

2024-06-1913:35:24
Linux
github.com
2
linux kernel
vulnerability
drm
amd
display
color transformation
index out of bounds
smatch
buffer overflow
error message

AI Score

7.2

Confidence

Low

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

In the Linux kernel, the following vulnerability has been resolved:

drm/amd/display: Fix potential index out of bounds in color transformation function

Fixes index out of bounds issue in the color transformation function.
The issue could occur when the index ‘i’ exceeds the number of transfer
function points (TRANSFER_FUNC_POINTS).

The fix adds a check to ensure ‘i’ is within bounds before accessing the
transfer function points. If ‘i’ is out of bounds, an error message is
logged and the function returns false to indicate an error.

Reported by smatch:
drivers/gpu/drm/amd/amdgpu/…/display/dc/dcn10/dcn10_cm_common.c:405 cm_helper_translate_curve_to_hw_format() error: buffer overflow ‘output_tf->tf_pts.red’ 1025 <= s32max
drivers/gpu/drm/amd/amdgpu/…/display/dc/dcn10/dcn10_cm_common.c:406 cm_helper_translate_curve_to_hw_format() error: buffer overflow ‘output_tf->tf_pts.green’ 1025 <= s32max
drivers/gpu/drm/amd/amdgpu/…/display/dc/dcn10/dcn10_cm_common.c:407 cm_helper_translate_curve_to_hw_format() error: buffer overflow ‘output_tf->tf_pts.blue’ 1025 <= s32max

AI Score

7.2

Confidence

Low

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial