Description
The udl_fb_mmap function in drivers/gpu/drm/udl/udl_fb.c at the Linux kernel version 3.4 and up to and including 4.15 has an integer-overflow vulnerability allowing local users with access to the udldrmfb driver to obtain full read and write permissions on kernel physical pages, resulting in a code execution in kernel space.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1369-1 | linux security update |
Debian DSA |
DSA-4187-1 | linux security update |
Debian DSA |
DSA-4188-1 | linux security update |
EUVD |
EUVD-2018-20390 | The udl_fb_mmap function in drivers/gpu/drm/udl/udl_fb.c at the Linux kernel version 3.4 and up to and including 4.15 has an integer-overflow vulnerability allowing local users with access to the udldrmfb driver to obtain full read and write permissions on kernel physical pages, resulting in a code execution in kernel space. |
Ubuntu USN |
USN-3654-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3654-2 | Linux kernel (Xenial HWE) vulnerabilities |
Ubuntu USN |
USN-3656-1 | Linux kernel (Raspberry Pi 2, Snapdragon) vulnerabilities |
Ubuntu USN |
USN-3674-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3674-2 | Linux kernel (Trusty HWE) vulnerabilities |
Ubuntu USN |
USN-3677-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3677-2 | Linux kernel (HWE) vulnerabilities |
References
History
No history.
Subscriptions
Status: PUBLISHED
Assigner: checkpoint
Published:
Updated: 2024-09-16T23:56:54.630Z
Reserved: 2018-03-19T00:00:00.000Z
Link: CVE-2018-8781
No data.
Status : Modified
Published: 2018-04-23T19:29:00.340
Modified: 2024-11-21T04:14:18.193
Link: CVE-2018-8781
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
EUVD
Ubuntu USN