There is an out-of-bounds write vulnerability in vmwgfx driver
Published Sep 9, 2022
6.3
MEDIUMCVSS 3.1
EPSS 0.78%
Description
An out-of-bounds(OOB) memory access vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_kms.c in GPU component in the Linux kernel with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system to gain privilege, causing a denial of service(DoS).
Affected products
-
- Version v3.2-rc1StatusaffectedConstraints<5.13.0-52*
- Version
Configuration 1
- ≥ 3.2 · ≤ 5.13.0-52
Configuration 2
- 11.0
No data.
Red Hat Enterprise Linux 9
kernel-0:5.14.0-284.11.1.el9_2
Fixed · RHSA-2023:2458
Red Hat Enterprise Linux 9
kernel-0:5.14.0-284.11.1.el9_2
Fixed · RHSA-2023:2458
Red Hat Enterprise Linux 9
kernel-rt-0:5.14.0-284.11.1.rt14.296.el9_2
Fixed · RHSA-2023:2148
Red Hat Enterprise Linux 6
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel
Out of support scope
Red Hat Enterprise Linux 7
kernel-rt
Out of support scope
Red Hat Enterprise Linux 8
kernel
Affected
Red Hat Enterprise Linux 8
kernel-rt
Affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-284.11.1.el9_2 | Fixed | RHSA-2023:2458 |
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-284.11.1.el9_2 | Fixed | RHSA-2023:2458 |
| Red Hat Enterprise Linux 9 | kernel-rt-0:5.14.0-284.11.1.rt14.296.el9_2 | Fixed | RHSA-2023:2148 |
| Red Hat Enterprise Linux 6 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel | Out of support scope | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Out of support scope | n/a |
| Red Hat Enterprise Linux 8 | kernel | Affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
Systems making use of the vmwgfx driver are potentially affected by this flaw; systems without the vmwgfx driver loaded are not affected by this flaw.
Red Hat mitigation
To mitigate this issue, it is possible to prevent the affected code from being loaded by blacklisting the vmwgfx kernel module. For instructions relating to blacklisting a kernel module, please see https://access.redhat.com/solutions/41278.
References (9)
- https://access.redhat.com/security/cve/CVE-2022-36280 Vendor Advisory
- https://bugzilla.openanolis.cn/show_bug.cgi?id=2071 Issue TrackingPermissions RequiredThird Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2133450 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-38997 Advisory
- https://lists.debian.org/debian-lts-announce/2023/03/msg00000.html mailing-list
- https://lists.debian.org/debian-lts-announce/2023/05/msg00006.html mailing-list
- https://nvd.nist.gov/vuln/detail/CVE-2022-36280
- https://www.cve.org/CVERecord?id=CVE-2022-36280
- https://www.debian.org/security/2023/dsa-5324 vendor-advisoryThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2022-36280 | Vendor Advisory | |
| https://bugzilla.openanolis.cn/show_bug.cgi?id=2071 | Issue TrackingPermissions RequiredThird Party Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2133450 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-38997 | Advisory | |
| https://lists.debian.org/debian-lts-announce/2023/03/msg00000.html | mailing-list | |
| https://lists.debian.org/debian-lts-announce/2023/05/msg00006.html | mailing-list | |
| https://nvd.nist.gov/vuln/detail/CVE-2022-36280 | ||
| https://www.cve.org/CVERecord?id=CVE-2022-36280 | ||
| https://www.debian.org/security/2023/dsa-5324 | vendor-advisoryThird Party Advisory |
Change history (0)
No recorded changes yet.