Bugzilla will be upgraded to version 5.0. The upgrade date is tentatively scheduled for 2 December 2018, pending final testing and feedback.
Bug 1541240 - (CVE-2018-6412) CVE-2018-6412 kernel: Incorrect integer signedness in sbuslibc:sbusfb_ioctl_helper() allows for information leakage
CVE-2018-6412 kernel: Incorrect integer signedness in sbuslibc:sbusfb_ioctl_h...
Status: CLOSED NOTABUG
Product: Security Response
Classification: Other
Component: vulnerability (Show other bugs)
unspecified
All Linux
low Severity low
: ---
: ---
Assigned To: Red Hat Product Security
impact=low,public=20180131,reported=2...
: Security
Depends On: 1541241
Blocks: 1541243
  Show dependency treegraph
 
Reported: 2018-02-01 23:34 EST by Sam Fowler
Modified: 2018-02-15 13:37 EST (History)
45 users (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
In the function sbusfb_ioctl_helper() in drivers/video/fbdev/sbuslib.c in the Linux kernel, up to and including 4.15, an integer signedness error allows arbitrary information leakage for the FBIOPUTCMAP_SPARC and FBIOGETCMAP_SPARC commands.
Story Points: ---
Clone Of:
Environment:
Last Closed: 2018-02-14 11:12:12 EST
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)

  None (edit)
Description Sam Fowler 2018-02-01 23:34:20 EST
In the function sbusfb_ioctl_helper() in drivers/video/fbdev/sbuslib.c in the Linux kernel up to and including 4.15, an integer signedness error allows arbitrary information leakage for the FBIOPUTCMAP_SPARC and FBIOGETCMAP_SPARC commands.

External References:
https://nvd.nist.gov/vuln/detail/CVE-2018-6412

Upstream Patch:
https://marc.info/?l=linux-fbdev&m=151734425901499
Comment 1 Sam Fowler 2018-02-01 23:35:11 EST
Created kernel tracking bugs for this issue:

Affects: fedora-all [bug 1541241]
Comment 2 Justin M. Forbes 2018-02-02 09:28:51 EST
Sparc is not a supported architecture for Fedora, so this does not impact Fedora users
Comment 5 Vladis Dronov 2018-02-14 11:12:12 EST
Statement:

This issue does not affect the versions of the Linux kernel as shipped with Red Hat Enterprise Linux 5, 6, 7, its real-time kernel, Red Hat Enterprise MRG 2, Red Hat Enterprise Linux 7 for ARM 64 and Red Hat Enterprise Linux 7 for Power 9 LE, as the code with the flaw is not built and is not shipped with the products listed.

Note You need to log in before you can comment on or make changes to this bug.