CVE-2024-43899
Severity CVSS v4.0:
Pending analysis
Type:
CWE-476
NULL Pointer Dereference
Publication date:
26/08/2024
Last modified:
11/01/2026
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
drm/amd/display: Fix null pointer deref in dcn20_resource.c<br />
<br />
Fixes a hang thats triggered when MPV is run on a DCN401 dGPU:<br />
<br />
mpv --hwdec=vaapi --vo=gpu --hwdec-codecs=all<br />
<br />
and then enabling fullscreen playback (double click on the video)<br />
<br />
The following calltrace will be seen:<br />
<br />
[ 181.843989] BUG: kernel NULL pointer dereference, address: 0000000000000000<br />
[ 181.843997] #PF: supervisor instruction fetch in kernel mode<br />
[ 181.844003] #PF: error_code(0x0010) - not-present page<br />
[ 181.844009] PGD 0 P4D 0<br />
[ 181.844020] Oops: 0010 [#1] PREEMPT SMP NOPTI<br />
[ 181.844028] CPU: 6 PID: 1892 Comm: gnome-shell Tainted: G W OE 6.5.0-41-generic #41~22.04.2-Ubuntu<br />
[ 181.844038] Hardware name: System manufacturer System Product Name/CROSSHAIR VI HERO, BIOS 6302 10/23/2018<br />
[ 181.844044] RIP: 0010:0x0<br />
[ 181.844079] Code: Unable to access opcode bytes at 0xffffffffffffffd6.<br />
[ 181.844084] RSP: 0018:ffffb593c2b8f7b0 EFLAGS: 00010246<br />
[ 181.844093] RAX: 0000000000000000 RBX: 0000000000000000 RCX: 0000000000000004<br />
[ 181.844099] RDX: ffffb593c2b8f804 RSI: ffffb593c2b8f7e0 RDI: ffff9e3c8e758400<br />
[ 181.844105] RBP: ffffb593c2b8f7b8 R08: ffffb593c2b8f9c8 R09: ffffb593c2b8f96c<br />
[ 181.844110] R10: 0000000000000000 R11: 0000000000000000 R12: ffffb593c2b8f9c8<br />
[ 181.844115] R13: 0000000000000001 R14: ffff9e3c88000000 R15: 0000000000000005<br />
[ 181.844121] FS: 00007c6e323bb5c0(0000) GS:ffff9e3f85f80000(0000) knlGS:0000000000000000<br />
[ 181.844128] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033<br />
[ 181.844134] CR2: ffffffffffffffd6 CR3: 0000000140fbe000 CR4: 00000000003506e0<br />
[ 181.844141] Call Trace:<br />
[ 181.844146] <br />
[ 181.844153] ? show_regs+0x6d/0x80<br />
[ 181.844167] ? __die+0x24/0x80<br />
[ 181.844179] ? page_fault_oops+0x99/0x1b0<br />
[ 181.844192] ? do_user_addr_fault+0x31d/0x6b0<br />
[ 181.844204] ? exc_page_fault+0x83/0x1b0<br />
[ 181.844216] ? asm_exc_page_fault+0x27/0x30<br />
[ 181.844237] dcn20_get_dcc_compression_cap+0x23/0x30 [amdgpu]<br />
[ 181.845115] amdgpu_dm_plane_validate_dcc.constprop.0+0xe5/0x180 [amdgpu]<br />
[ 181.845985] amdgpu_dm_plane_fill_plane_buffer_attributes+0x300/0x580 [amdgpu]<br />
[ 181.846848] fill_dc_plane_info_and_addr+0x258/0x350 [amdgpu]<br />
[ 181.847734] fill_dc_plane_attributes+0x162/0x350 [amdgpu]<br />
[ 181.848748] dm_update_plane_state.constprop.0+0x4e3/0x6b0 [amdgpu]<br />
[ 181.849791] ? dm_update_plane_state.constprop.0+0x4e3/0x6b0 [amdgpu]<br />
[ 181.850840] amdgpu_dm_atomic_check+0xdfe/0x1760 [amdgpu]
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.10.5 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



