CVE-2024-26914

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/04/2024
Last modified:
25/11/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> drm/amd/display: fix incorrect mpc_combine array size<br /> <br /> [why]<br /> MAX_SURFACES is per stream, while MAX_PLANES is per asic. The<br /> mpc_combine is an array that records all the planes per asic. Therefore<br /> MAX_PLANES should be used as the array size. Using MAX_SURFACES causes<br /> array overflow when there are more than 3 planes.<br /> <br /> [how]<br /> Use the MAX_PLANES for the mpc_combine array size.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.7 (including) 6.7.6 (excluding)
cpe:2.3:o:linux:linux_kernel:6.8:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc2:*:*:*:*:*:*