Back to search
CVE-2017-7261
Published: Mar 24, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
The vmw_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.5 does not check for a zero value of certain levels data, which allows local users to cause a denial of service (ZERO_SIZE_PTR dereference, and GPF and possibly panic) via a crafted ioctl call for a /dev/dri/renderD* device.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://marc.info/?t=149037004200005&r=1&w=2
x_refsource_MISC
97096
vdb-entry
x_refsource_BID
https://bugzilla.redhat.com/show_bug.cgi?id=1435719
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now