CVE-2024-26938: drm/i915/bios: Tolerate devdata==NULL in intel_bios_encoder_supports_dp_dual_mode()
Published May 1, 2024
·Updated
drm/i915/bios: Tolerate devdata==NULL in intelbiosencodersupportsdpdualmode()
Affected Software
12 affected componentsFixes available
debian/linux<=5.10.223-1, <=5.10.234-1
6.1.129-16.1.135-16.12.25-1
redhat/kernel<6.1.84
6.1.84
redhat/kernel<6.6.24
6.6.24
redhat/kernel<6.7.12
6.7.12
redhat/kernel<6.8.3
6.8.3
redhat/kernel<6.9
6.9
Linux Linux kernel<6.1.84
Linux Linux kernel>=6.2<6.6.24
Linux Linux kernel>=6.7<6.7.12
Linux Linux kernel>=6.8<6.8.3
Linux Linux kernel=6.9-rc1
Microsoft cbl2 kernel 5.15.186.1-1
Remediation
Event History
May 1, 2024
CVE Published
via MITRE·05:17 AM
Data Sourced
via MITRE·05:17 AM
Description
Data Sourced
via NVD·06:15 AM
Description
Data Sourced
via NVD·06:15 AM
RemedySeverityAffected Software
Data Sourced
via Red Hat·05:54 PM
DescriptionSeverityAffected Software
Jun 8, 2024
Data Sourced
via Launchpad·01:10 AM
Description
Apr 28, 2025
Data Sourced
via Ubuntu·02:21 PM
RemedyDescriptionSeverityAffected Software
Sep 20, 2025
Data Sourced
via Microsoft·01:02 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·01:02 AM
Affected Software
Updated
via Microsoft·01:02 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2024-26938?
CVE-2024-26938 has not been assigned a severity score in the public database yet.
2
How do I fix CVE-2024-26938?
To mitigate CVE-2024-26938, you should update your kernel to version 6.1.84 or later for Red Hat and to versions 5.10.223-1 or greater for Debian.
3
What versions of the Linux kernel are affected by CVE-2024-26938?
CVE-2024-26938 affects multiple versions prior to the patched versions including kernel versions before 6.1.84 and Debian's 5.10.223-1.
4
What is the nature of the vulnerability described in CVE-2024-26938?
CVE-2024-26938 is a vulnerability in the Linux kernel related to the drm/i915/bios and can lead to system instability due to null pointer dereference.
5
Who is responsible for resolving CVE-2024-26938?
The Linux kernel maintainers are responsible for addressing CVE-2024-26938, which has been resolved in recent patches.