Back to search
CVE-2017-5576
Published: Feb 6, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
Integer overflow in the vc4_get_bcl function in drivers/gpu/drm/vc4/vc4_gem.c in the VideoCore DRM driver in the Linux kernel before 4.9.7 allows local users to cause a denial of service or possibly have unspecified other impact via a crafted size value in a VC4_SUBMIT_CL ioctl call.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[oss-security] 20170122 CVE request: Linux kernel: vc4: int overflow leading to heap-based buffer overflow
mailing-list
x_refsource_MLIST
https://bugzilla.redhat.com/show_bug.cgi?id=1416436
x_refsource_CONFIRM
http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.7
x_refsource_CONFIRM
95767
vdb-entry
x_refsource_BID
[linux-kernel] 20170118 [PATCH 1/2] drm/vc4: Fix an integer overflow in temporary allocation layout.
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now