CVE-2024-52559

drm/msm/gem: prevent integer overflow in msm_ioctl_gem_submit()

References

Notes

 carnil> Introduced in 198725337ef1 ("drm/msm: fix cmdstream size check"). Vulnerable
 carnil> versions: 3.12-rc2.

Bugs

Status

Branch Status
upstream released (6.14-rc1) [3a47f4b439beb98e955d501c609dfd12b7836d61]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.13-upstream-stable released (6.13.4) [e43a0f1327a1ee70754f8a0de6e0262cfa3e0b87]
6.12-upstream-stable released (6.12.16) [2f1845e46c41ed500789d53dc45b383b7745c96c]
6.6-upstream-stable released (6.6.80) [2b99b2c4621d13bd4374ef384e8f1fc188d0a5df]
6.1-upstream-stable needed
5.10-upstream-stable needed
sid released (6.12.16-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security needed
5.10-bullseye-security needed