Linux Kernel i915 Driver May Let Local Users Gain Elevated Privileges
|
|
SecurityTracker Alert ID: 1021065
|
|
SecurityTracker URL: http://securitytracker.com/id?1021065
|
|
CVE Reference: CVE-2008-3831
(Links to External Site)
|
Date: Oct 17 2008
|
Impact: User access via local system
|
Fix Available: Yes
Vendor Confirmed: Yes
|
Version(s): 2.6.x
|
Description: A vulnerability was reported in Linux Kernel. A local user may be able to obtain elevated privileges on the target system.
A local user can invoke the DRM_I915_HWS_ADDR ioctl() for Xserver to trigger memory corruption.
The vulnerability resides in 'drivers/char/drm/i915_dma.c'.
Olaf Kirch reported this vulnerability.
|
Impact: A local user may be able to obtain elevated privileges on the target system.
|
Solution: A source code fix is available.
|
Vendor URL: www.kernel.org/ (Links to External Site)
|
Cause: Access control error
|
Underlying OS: Linux (Caldera/SCO), Linux (Conectiva), Linux (Debian), Linux (EnGarde), Linux (Gentoo), Linux (HP Secure OS), Linux (Immunix), Linux (Mandriva/Mandrake), Linux (Progeny Debian), Linux (Red Hat Enterprise), Linux (Red Hat Fedora), Linux (Red Hat Linux), Linux (SGI), Linux (Slackware), Linux (Sun), Linux (SuSE), Linux (Trustix), Linux (Turbo Linux), Linux (Ubuntu), Linux (Xandros)
|
|
Message History:
This archive entry has one or more follow-up message(s) listed below.
|
Source Message Contents
|
Date: Thu, 16 Oct 2008 23:14:47 -0400
Subject: Linux Kernel
|
CVE-2008-3831
|
|