Answer in brief
CVE-2024-26660 records a Unknown severity vulnerability in drm/amd/display: Implement bounds check for stream encoder creation in DCN301. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=3a83e4e64bb1522ddac67ffc787d1c38291e1a65 <42442f74314d41ddc68227047036fa3e78940054 || >=3a83e4e64bb1522ddac67ffc787d1c38291e1a65 <efdd665ce1a1634b8c1dad5e7f6baaef3e131d0a || >=3a83e4e64bb1522ddac67ffc787d1c38291e1a65 <cd9bd10c59e3c1446680514fd3097c5b00d3712d || >=3a83e4e64bb1522ddac67ffc787d1c38291e1a65 <a938eab9586eea31cfd129a507f552efae14d738 || >=3a83e4e64bb1522ddac67ffc787d1c38291e1a65 <58fca355ad37dcb5f785d9095db5f748b79c5dc2 | 42442f74314d41ddc68227047036fa3e78940054, efdd665ce1a1634b8c1dad5e7f6baaef3e131d0a, cd9bd10c59e3c1446680514fd3097c5b00d3712d, a938eab9586eea31cfd129a507f552efae14d738, 58fca355ad37dcb5f785d9095db5f748b79c5dc2 |
| Linux/Linuxgeneric | 5.11 | Not reported |
Published upstream
Apr 2, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Implement bounds check for stream encoder creation in DCN301 'stream_enc_regs' array is an array of dcn10_stream_enc_registers structures. The array is initialized with four elements, corresponding to the four calls to stream_enc_regs() in the array initializer. This means that valid indices for this array are 0, 1, 2, and 3. The error message 'stream_enc_regs' 4 <= 5 below, is indicating that there is an attempt to access this array with an index of 5, which is out of bounds. This could lead to undefined behavior Here, eng_id is used as an index to access the stream_enc_regs array. If eng_id is 5, this would result in an out-of-bounds access on the stream_enc_regs array. Thus fixing Buffer overflow error in dcn301_stream_encoder_create reported by Smatch: drivers/gpu/drm/amd/amdgpu/../display/dc/resource/dcn301/dcn301_resource.c:1011 dcn301_stream_encoder_create() error: buffer overflow 'stream_enc_regs' 4 <= 5
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2024-26660 records a Unknown severity vulnerability in drm/amd/display: Implement bounds check for stream encoder creation in DCN301. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=3a83e4e64bb1522ddac67ffc787d1c38291e1a65 <42442f74314d41ddc68227047036fa3e78940054 || >=3a83e4e64bb1522ddac67ffc787d1c38291e1a65 <efdd665ce1a1634b8c1dad5e7f6baaef3e131d0a || >=3a83e4e64bb1522ddac67ffc787d1c38291e1a65 <cd9bd10c59e3c1446680514fd3097c5b00d3712d || >=3a83e4e64bb1522ddac67ffc787d1c38291e1a65 <a938eab9586eea31cfd129a507f552efae14d738 || >=3a83e4e64bb1522ddac67ffc787d1c38291e1a65 <58fca355ad37dcb5f785d9095db5f748b79c5dc2 | 42442f74314d41ddc68227047036fa3e78940054, efdd665ce1a1634b8c1dad5e7f6baaef3e131d0a, cd9bd10c59e3c1446680514fd3097c5b00d3712d, a938eab9586eea31cfd129a507f552efae14d738, 58fca355ad37dcb5f785d9095db5f748b79c5dc2 |
| Linux/Linuxgeneric | 5.11 | Not reported |
Published upstream
Apr 2, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Implement bounds check for stream encoder creation in DCN301 'stream_enc_regs' array is an array of dcn10_stream_enc_registers structures. The array is initialized with four elements, corresponding to the four calls to stream_enc_regs() in the array initializer. This means that valid indices for this array are 0, 1, 2, and 3. The error message 'stream_enc_regs' 4 <= 5 below, is indicating that there is an attempt to access this array with an index of 5, which is out of bounds. This could lead to undefined behavior Here, eng_id is used as an index to access the stream_enc_regs array. If eng_id is 5, this would result in an out-of-bounds access on the stream_enc_regs array. Thus fixing Buffer overflow error in dcn301_stream_encoder_create reported by Smatch: drivers/gpu/drm/amd/amdgpu/../display/dc/resource/dcn301/dcn301_resource.c:1011 dcn301_stream_encoder_create() error: buffer overflow 'stream_enc_regs' 4 <= 5
Quoted source text, attributed separately from HOL analysis.