Back to search
CVE-2017-5577
Published: Feb 6, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
The vc4_get_bcl function in drivers/gpu/drm/vc4/vc4_gem.c in the VideoCore DRM driver in the Linux kernel before 4.9.7 does not set an errno value upon certain overflow detections, which allows local users to cause a denial of service (incorrect pointer dereference and OOPS) via inconsistent size values in a VC4_SUBMIT_CL ioctl call.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[oss-security] 20170122 CVE request: Linux kernel: vc4: int overflow leading to heap-based buffer overflow
mailing-list
x_refsource_MLIST
95765
vdb-entry
x_refsource_BID
[linux-kernel] 20170118 [PATCH 2/2] drm/vc4: Return -EINVAL on the overflow checks failing.
mailing-list
x_refsource_MLIST
http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.7
x_refsource_CONFIRM
https://bugzilla.redhat.com/show_bug.cgi?id=1416437
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now