Back to bug 1939686

Who When What Removed Added
Dhananjay Arunesh 2021-03-16 19:51:00 UTC Depends On 1939687
Dhananjay Arunesh 2021-03-16 19:52:25 UTC Blocks 1919800
Rohit Keshri 2021-03-18 11:56:43 UTC Summary kernel: DRM Memory Management Double Free Privilege Escalation Vulnerability CVE-2021-20292 kernel: DRM Memory Management Double Free Privilege Escalation Vulnerability
Alias CVE-2021-20292
Eric Christensen 2021-03-18 13:41:56 UTC Doc Text A flaw was found in the Linux kernel. The specific flaw exists within DRM memory management. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the kernel.
Salvatore Bonaccorso 2021-03-20 07:30:18 UTC CC carnil
Flags needinfo?(darunesh)
Rohit Keshri 2021-03-23 07:04:50 UTC CC rkeshri
Flags needinfo?(darunesh)
Rohit Keshri 2021-03-23 07:07:18 UTC CC esammons, iboverma, jross, mcressma, rt-maint
Rohit Keshri 2021-03-23 07:16:20 UTC Depends On 1941921, 1941920, 1941919
Rohit Keshri 2021-03-23 07:25:45 UTC Fixed In Version Kernel 5.9
Rohit Keshri 2021-03-23 07:41:28 UTC Doc Text A flaw was found in the Linux kernel. The specific flaw exists within DRM memory management. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the kernel. There is a flaw reported in drivers/gpu/drm/nouveau/nouveau_sgdma.c in nouveau_sgdma_create_ttm in Nouveau DRM subsystem. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker with a local account with a root privilege, can leverage this vulnerability to escalate privileges and execute code in the context of the kernel.
Rohit Keshri 2021-03-23 07:45:02 UTC Comment 0 updated
Florencio Cano 2021-03-23 16:46:16 UTC Depends On 1942109, 1942108
Florencio Cano 2021-03-23 16:47:20 UTC Priority low medium
Severity low medium
Red Hat Bugzilla 2021-05-30 12:03:18 UTC CC blc
Red Hat Bugzilla 2021-05-30 12:44:02 UTC CC bhu
Jeff Fearn 🐞 2021-06-03 11:15:54 UTC CC blc
Jeff Fearn 🐞 2021-06-03 12:06:10 UTC CC bhu
Dave Airlie 2021-06-09 19:29:39 UTC Flags needinfo?(darunesh)
Dhananjay Arunesh 2021-06-23 08:05:35 UTC Flags needinfo?(darunesh) needinfo?(rkeshri)
Rohit Keshri 2021-06-24 07:25:18 UTC Flags needinfo?(rkeshri)
Red Hat Bugzilla 2021-09-15 05:46:59 UTC CC jglisse
Red Hat Bugzilla 2022-06-04 08:04:34 UTC CC fpacheco
Red Hat Bugzilla 2022-07-16 03:20:24 UTC CC brdeoliv
Red Hat Bugzilla 2022-12-31 23:36:04 UTC CC fhrbata
Red Hat Bugzilla 2023-04-01 08:41:41 UTC CC dhoward
Red Hat Bugzilla 2023-07-07 08:35:04 UTC Assignee security-response-team nobody

Back to bug 1939686