The Radeon GPU drivers in the Linux kernel before 2.6.38-rc5 do not properly validate data related to the AA resolve registers, which allows local users to write to arbitrary memory locations associated with (1) Video RAM (aka VRAM) or (2) the Graphics Translation Table (GTT) via crafted values.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:25
Type | Values Removed | Values Added |
---|---|---|
References | () http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=fff1ce4dc6113b6fdc4e3a815ca5fd229408f8ef - | |
References | () http://openwall.com/lists/oss-security/2011/02/24/11 - Mailing List, Patch, Third Party Advisory | |
References | () http://openwall.com/lists/oss-security/2011/02/24/3 - Mailing List, Patch, Third Party Advisory | |
References | () http://openwall.com/lists/oss-security/2011/02/25/4 - Mailing List, Patch, Third Party Advisory | |
References | () http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.38-rc5 - Broken Link | |
References | () http://www.securityfocus.com/bid/46557 - Third Party Advisory, VDB Entry | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=680000 - Issue Tracking, Patch, Third Party Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/65691 - Third Party Advisory, VDB Entry |
Information
Published : 2011-02-28 16:00
Updated : 2024-11-21 01:25
NVD link : CVE-2011-1016
Mitre link : CVE-2011-1016
CVE.ORG link : CVE-2011-1016
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-20
Improper Input Validation