Bug 2122526 (CVE-2022-3061) - CVE-2022-3061 kernel: fbdev: i740fb: divide-by-zero in drivers/video/fbdev/i740fb.c could lead to DoS
Summary: CVE-2022-3061 kernel: fbdev: i740fb: divide-by-zero in drivers/video/fbdev/i7...
Keywords:
Status: CLOSED NOTABUG
Alias: CVE-2022-3061
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks: 2103569
TreeView+ depends on / blocked
 
Reported: 2022-08-30 08:38 UTC by Alex
Modified: 2023-03-14 18:36 UTC (History)
40 users (show)

Fixed In Version: Linux kernel 5.18-rc5
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2022-08-30 08:45:05 UTC
Embargoed:


Attachments (Terms of Use)

Description Alex 2022-08-30 08:38:55 UTC
Found Linux Kernel flaw in the i740 driver.
The Userspace program could pass any values to the driver through ioctl() interface.
The driver doesn't check the value of 'pixclock', so it may cause a divide by zero error.

Reference: 
https://git.kernel.org/pub/scm/linux/kernel/git/deller/linux-fbdev.git/commit/?id=15cf0b82271b1823fb02ab8c377badba614d95d5


Note You need to log in before you can comment on or make changes to this bug.