CVE-2024-46814

Updated: 2026-02-27 02:22:30.255233

Description:

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check msg_id before processing transcation [WHY & HOW] HDCP_MESSAGE_ID_INVALID (-1) is not a valid msg_id nor is it a valid array index, and it needs checking before used. This fixes 4 OVERRUN issues reported by Coverity.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

Oracle Linux 7 ELS kernel-uek 5.4.17 7.8 HIGH Not Vulnerable 2026-02-07 21:40:08 CVE-2024-46814 targets the AMDGPU Display Core HDCP path (drm/amd/display) and is only reachable whe...
RHEL 7 ELS kernel 3.10.0 7.8 HIGH Not Vulnerable 2025-05-28 00:25:37 Not affected: CVE-2024-46814 targets the AMDGPU Display Core (drm/amd/display) HDCP message-handling...
Ubuntu 16.04 ELS linux-hwe 4.15.0 7.8 HIGH Not Vulnerable 2024-10-08 06:18:32 Not affected: CVE-2024-46814 targets the AMDGPU Display Core HDCP message-handling code (drm/amd/dis...
Ubuntu 16.04 ELS linux 4.4.0 7.8 HIGH Not Vulnerable 2024-10-08 06:18:27 Not affected: CVE-2024-46814 targets the AMDGPU Display Core HDCP message-handling code (drm/amd/dis...
Ubuntu 18.04 ELS linux 4.15.0 7.8 HIGH Not Vulnerable 2024-10-08 06:18:27 Not affected: the vulnerable code is in the AMD DRM display HDCP path that was introduced upstream i...
Total: 15