Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's handling of DisplayPort (DP) auxiliary transfers for Mediatek devices has been addressed. The issue arose because the logging mechanism in the DP auxiliary transfer functions was not properly aligned with the device's error handling. This misalignment could lead to NULL pointer dereferences and kernel panics if errors occurred during auxiliary transfers before the DP bridge was fully established. Such errors could be triggered by the panel driver requesting EDID information via auxiliary transfers, prior to the DP bridge being attached, especially with the upcoming implementation of auxiliary bus support.
The vulnerability could cause NULL pointer dereferences, leading to kernel panics.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.