Back to bug 2133451

Who When What Removed Added
Mauro Matteo Cascella 2022-10-10 14:20:55 UTC Doc Text An integer overflow was found in the Linux kernel's vmwgfx driver. Exploiting this bug would require an attacker to have access to either /dev/dri/card0 or /dev/dri/rendererD128 and be able to issue an ioctl() on the resulting file descriptor. Under certain circumstances a local unprivileged user could use this flaw to crash the system, causing a denial of service.
Mauro Matteo Cascella 2022-10-10 15:18:48 UTC Depends On 2133477, 2133479, 2133481, 2133478, 2133480
RaTasha Tillery-Smith 2022-10-10 17:48:26 UTC Doc Text An integer overflow was found in the Linux kernel's vmwgfx driver. Exploiting this bug would require an attacker to have access to either /dev/dri/card0 or /dev/dri/rendererD128 and be able to issue an ioctl() on the resulting file descriptor. Under certain circumstances a local unprivileged user could use this flaw to crash the system, causing a denial of service. An integer overflow was found in the Linux kernel's vmwgfx driver. This flaw allows a local, unprivileged attacker with access to either /dev/dri/card0 or /dev/dri/rendererD128, and able to issue an ioctl() on the resulting file descriptor to crash the system, causing a denial of service.
Niels De Graef 2022-11-15 10:12:50 UTC CC kraxel, ndegraef
Flags needinfo?(kraxel)
Gerd Hoffmann 2022-11-16 08:50:04 UTC Flags needinfo?(kraxel)
Niels De Graef 2022-11-17 16:42:54 UTC Flags needinfo?(mcascell)
Mauro Matteo Cascella 2022-11-21 09:47:00 UTC Flags needinfo?(mcascell)
Mauro Matteo Cascella 2022-11-23 10:16:04 UTC Summary CVE-2022-36402 kernel: vmxgfx: integer overflow in vmxgfx_execbuf.c CVE-2022-36402 kernel: vmwgfx: integer overflow in vmwgfx_execbuf.c
Mauro Matteo Cascella 2022-11-23 10:41:50 UTC Flags needinfo?(ndegraef)
Red Hat Bugzilla 2022-12-31 23:35:52 UTC CC fhrbata
Steve Beattie 2023-01-11 06:05:50 UTC CC steve.beattie
ldu 2023-03-01 11:21:50 UTC CC ldu
Red Hat Bugzilla 2023-04-01 08:41:28 UTC CC dhoward
Niels De Graef 2023-06-01 15:49:02 UTC Flags needinfo?(ndegraef) needinfo?(mcascell)
Mauro Matteo Cascella 2023-06-02 20:30:53 UTC Flags needinfo?(mcascell)
Red Hat Bugzilla 2023-07-07 08:32:50 UTC Assignee security-response-team nobody

Back to bug 2133451