CVE-2024-46809 addresses a NULL pointer dereference vulnerability in the Linux kernel's AMD display (drm/amd/display) driver, specifically related to the handling of BIOS images. This flaw, affecting Linux kernel versions, could lead to a system crash (denial of service) due to the driver attempting to use uninitialized BIOS image data. Rated as Medium severity (CVSS 5.5), the vulnerability requires local access and low privileges to exploit, with no user interaction needed. A successful attack would result in high availability impact, but no confidentiality or integrity compromise. Currently, there is no evidence of active exploitation, and no public exploit code (Metasploit, Nuclei, ExploitDB) is available. Community discussion and media coverage for this CVE are minimal, aligning with the typical low attention for most vulnerabilities.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 6.6.50CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.7, < 6.10.9CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
HP ThinPro 8.1 SP8 Security Updates
Oct 27, 2025HP ThinPro 8.1 SP8 Security Updates
Oct 27, 2025HP ThinPro 8.1 SP8 Security Updates
Oct 27, 2025HP ThinPro 8.1 SP7 Security Updates
Jun 3, 2025HP ThinPro 8.1 SP7 Security Updates
Jun 3, 2025CVE-2024-46809
Oct 8, 2024kernel: drm/amd/display: Check BIOS images before it is used
Sep 27, 2024drm/amd/display: Check BIOS images before it is used
Sep 10, 2024