CVE-2017-5576

Description

Integer overflow in the vc4_get_bcl function in drivers/gpu/drm/vc4/vc4_gem.c in the VideoCore DRM driver in the Linux kernel before 4.9.7 allows local users to cause a denial of service or possibly have unspecified other impact via a crafted size value in a VC4_SUBMIT_CL ioctl call.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.075

Associated Vulnerability

VulnerabilityOS Platform
Linux kernel (USN-3190-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3190-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3190-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3190-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3251-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3251-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3251-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3251-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3256-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3256-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3256-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3256-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3266-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3266-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3266-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3266-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3292-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3292-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3292-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3292-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3313-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3313-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3313-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3313-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3326-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3326-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3326-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3326-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3342-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3342-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3342-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3342-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3359-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3359-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3359-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3359-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3359-1) linux-image-4.8.0-59-generic_4.8.0-59.64_i386.debLinux
Linux kernel (USN-3359-1) linux-image-4.8.0-59-generic_4.8.0-59.64_amd64.debLinux
Linux kernel (USN-3359-1) linux-image-4.8.0-59-lowlatency_4.8.0-59.64_i386.debLinux
Linux kernel (USN-3359-1) linux-image-4.8.0-59-lowlatency_4.8.0-59.64_amd64.debLinux
Linux kernel (USN-3209-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3209-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3209-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3209-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3221-1) linux-image-generic_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3221-1) linux-image-generic_4.8.0.59.72_amd64.debLinux
Linux kernel (USN-3221-1) linux-image-lowlatency_4.8.0.59.72_i386.debLinux
Linux kernel (USN-3221-1) linux-image-lowlatency_4.8.0.59.72_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234