CVE-2024-40932: drm/exynos/vidi: fix memory leak in .get_modes()
Published Jul 12, 2024
·Updated
In the Linux kernel, the following vulnerability has been resolved:
drm/exynos/vidi: fix memory leak in .getmodes()
The duplicated EDID is never freed. Fix it.
Affected Software
12 affected componentsFixes available
Linux Linux kernel<4.19.317
Linux Linux kernel>=4.20<5.4.279
Linux Linux kernel>=5.5<5.10.221
Linux Linux kernel>=5.11<5.15.162
Linux Linux kernel>=5.16<6.1.95
Linux Linux kernel>=6.2<6.6.35
Linux Linux kernel>=6.7<6.9.6
Linux Linux kernel=6.10-rc1
Linux Linux kernel=6.10-rc2
Linux Linux kernel=6.10-rc3
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.22-16.12.25-1
debian/linux-6.1
6.1.129-1~deb11u1
Remediation
Event History
Jul 12, 2024
CVE Published
via MITRE·12:25 PM
Data Sourced
via MITRE·12:25 PM
Description
Data Sourced
via NVD·01:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Apr 27, 2025
Data Sourced
via Ubuntu·05:24 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-40932?
CVE-2024-40932 is classified as a medium severity vulnerability.
2
How do I fix CVE-2024-40932?
To fix CVE-2024-40932, you need to upgrade the Linux kernel to version 5.10.223-1 or later.
3
Which Linux kernel versions are affected by CVE-2024-40932?
CVE-2024-40932 affects Linux kernel versions from 4.19.317 to 6.10-rc3.
4
Is CVE-2024-40932 a memory leak issue?
Yes, CVE-2024-40932 involves a memory leak due to duplicated EDID not being freed.
5
What packages contain the fix for CVE-2024-40932?
The fix for CVE-2024-40932 is included in packages such as linux 5.10.223-1, linux-6.1 6.1.119-1~deb11u1, and others.