VDB

CISA-2021-47046

CISA-2021-47046 PUBLISHED

Reported by Linux · Published February 28, 2024

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix off by one in hdmi_14_process_transaction() The hdcp_i2c_offsets[] array did not have an entry for HDCP_MESSAGE_ID_WRITE_CONTENT_STREAM_TYPE so it led to an off by one read overflow. I added an entry and copied the 0x0 value for the offset from similar code in drivers/gpu/drm/amd/display/modules/hdcp/hdcp_ddc.c. I also declared several of these arrays as having HDCP_MESSAGE_ID_MAX entries. This doesn't change the code, but it's just a belt and suspenders approach to try future proof the code.

Affected Products

VendorProductVersions
LinuxLinux4c283fdac08abf3211533f70623c90a34f41d08d, 4c283fdac08abf3211533f70623c90a34f41d08d, 4c283fdac08abf3211533f70623c90a34f41d08d
LinuxLinux5.5, 0, 5.10.37
linuxlinux_kernel5.5, 5.5, 5.5
LinuxLinux4c283fdac08abf3211533f70623c90a34f41d08d, 4c283fdac08abf3211533f70623c90a34f41d08d, 4c283fdac08abf3211533f70623c90a34f41d08d

Timeline

  • Feb 28, 2024 CVE Published
  • May 4, 2025 CVE Updated

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›