CVE-2024-39291: drm/amdgpu: Fix buffer size in gfx_v9_4_3_init_ cp_compute_microcode() and rlc_microcode()
Published Jun 24, 2024
·Updated
drm/amdgpu: Fix buffer size in gfxv943init cpcomputemicrocode() and rlcmicrocode()
Affected Software
16 affected componentsFixes available
redhat/kernel<6.6.33
6.6.33
redhat/kernel<6.9.4
6.9.4
redhat/kernel<6.10
6.10
Linux Linux kernel<6.5
Linux Linux kernel>=6.6<6.6.33
Linux Linux kernel>=6.9<6.9.4
Linux Linux kernel=6.10.0-rc1
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-16.12.27-1
Linux Linux kernel>=6.5<6.6.33
Linux Linux kernel>=6.7<6.9.4
Linux Linux kernel=6.10-rc1
Microsoft cbl2 kernel 5.15.180.1-1
Microsoft cbl2 kernel 5.15.180.1-1
Microsoft azl3 kernel 6.6.35.1-4
Microsoft cbl2 kernel 5.15.160.1-1
Microsoft azl3 kernel 6.6.29.1-5
Remediation
Event History
Jun 24, 2024
CVE Published
via MITRE·01:52 PM
Data Sourced
via MITRE·01:52 PM
Description
Jul 12, 2024
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
SeverityAffected Software
Updated
via Microsoft·07:00 AM
Description
Sep 11, 2024
Data Sourced
via Launchpad·04:24 PM
Description
Dec 4, 2024
Data Sourced
via Ubuntu·04:43 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-39291?
CVE-2024-39291 has a moderate severity level due to buffer size issues in the Linux kernel.
2
How do I fix CVE-2024-39291?
To fix CVE-2024-39291, upgrade your Linux kernel to versions 6.6.33, 6.9.4, or 6.10.
3
Which versions of the Linux kernel are affected by CVE-2024-39291?
CVE-2024-39291 affects Linux kernel versions prior to 6.6.33, 6.9.4, and 6.10.
4
What components of the Linux kernel are impacted by CVE-2024-39291?
CVE-2024-39291 specifically impacts the drm/amdgpu subsystem in the Linux kernel.
5
Is CVE-2024-39291 exploitable?
While there are no known exploits publicly available for CVE-2024-39291, system vulnerabilities should always be addressed promptly.