CVE-2024-56616

Updated: 2025-11-10 01:49:33.577962

Description:

In the Linux kernel, the following vulnerability has been resolved: drm/dp_mst: Fix MST sideband message body length check Fix the MST sideband message body length check, which must be at least 1 byte accounting for the message body CRC (aka message data CRC) at the end of the message. This fixes a case where an MST branch device returns a header with a correct header CRC (indicating a correctly received body length), with the body length being incorrectly set to 0. This will later lead to a memory corruption in drm_dp_sideband_append_payload() and the following errors in dmesg: UBSAN: array-index-out-of-bounds in drivers/gpu/drm/display/drm_dp_mst_topology.c:786:25 index -1 is out of range for type 'u8 [48]' Call Trace: drm_dp_sideband_append_payload+0x33d/0x350 [drm_display_helper] drm_dp_get_one_sb_msg+0x3ce/0x5f0 [drm_display_helper] drm_dp_mst_hpd_irq_handle_event+0xc8/0x1580 [drm_display_helper] memcpy: detected field-spanning write (size 18446744073709551615) of single field "&msg->msg[msg->curlen]" at drivers/gpu/drm/display/drm_dp_mst_topology.c:791 (size 256) Call Trace: drm_dp_sideband_append_payload+0x324/0x350 [drm_display_helper] drm_dp_get_one_sb_msg+0x3ce/0x5f0 [drm_display_helper] drm_dp_mst_hpd_irq_handle_event+0xc8/0x1580 [drm_display_helper]


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 7.8 HIGH Released CLSA-2025:1759866837 2025-10-08 04:57:25 Ignored due to low severity
CentOS 6 ELS kernel 2.6.32 7.8 HIGH Released CLSA-2025:1761139764 2025-11-11 03:24:05
CentOS 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2025:1759431860 2025-10-15 20:29:02
CentOS 8.4 ELS kernel 4.18.0 7.8 HIGH In Testing 2025-11-27 20:07:09
CentOS 8.5 ELS kernel 4.18.0 7.8 HIGH Needs Triage 2025-09-28 07:38:46
CentOS Stream 8 ELS kernel 4.18.0 7.8 HIGH Released CLSA-2025:1763722365 2025-11-21 21:53:05
CloudLinux 7 ELS kernel 3.10.0 7.8 HIGH Ignored 2025-11-07 23:26:44 CL7 support is limited
Oracle Linux 6 ELS kernel 2.6.32 7.8 HIGH Released CLSA-2025:1761074747 2025-10-22 09:43:34
Oracle Linux 7 ELS kernel 3.10.0 7.8 HIGH Released CLSA-2025:1759431869 2025-10-02 23:09:40
Oracle Linux 7 ELS kernel-uek 5.4.17 7.8 HIGH Released CLSA-2025:1764085382 2025-11-25 21:49:04
Total: 15