CVE-2017-7294 PUBLISHED

The vmw_surface_define_ioctl function in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.10.6 does not validate addition of certain levels data, which allows local users to trigger an integer overflow and out-of-bounds write, and cause a denial of service (system hang or crash) or possibly gain privileges, via a crafted ioctl call for a /dev/dri/renderD* device.

EPSS 0.05% · 15.2th percentile

Risk Scores

EPSS Score
0.05%
15.2th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-aws4.4.0-1016.25, 0, 4.4.0-1001.10
Ubuntu:14.04:LTSlinux-lts-xenial4.4.0-45.66~14.04.1, 4.4.0-13.29~14.04.1, 4.4.0-14.30~14.04.2
Ubuntu:22.04:LTSlinux-intel-iot-realtime5.15.0-1073.75, 0
Ubuntu:18.04:LTSlinux-hwe-edge5.3.0-24.26~18.04.2, 5.3.0-23.25~18.04.2, 0
Ubuntu:24.04:LTSlinux-raspi-realtime0, 6.8.0-2019.20
Ubuntu:16.04:LTSlinux4.4.0-24.43, 4.4.0-22.39, 4.4.0-21.37
Ubuntu:18.04:LTSlinux-hwe5.3.0-40.32~18.04.1, 5.3.0-76.72, 5.3.0-75.71
Ubuntu:16.04:LTSlinux-raspi20, 4.4.0-1050.57, 4.4.0-1051.58
Ubuntu:18.04:LTSlinux-oem4.15.0-1059.68, 4.15.0-1063.72, 4.15.0-1064.73
Ubuntu:18.04:LTSlinux-azure4.15.0-1030.31, 0, 4.15.0-1002.2
Ubuntu:20.04:LTSlinux-riscv5.4.0-30.34, 5.4.0-31.35, 5.4.0-33.37
Ubuntu:16.04:LTSlinux-hwe0, 4.8.0-36.36~16.04.1, 4.8.0-39.42~16.04.1
Ubuntu:16.04:LTSlinux-snapdragon4.4.0-1020.23, 4.4.0-1015.18, 4.4.0-1013.15
Ubuntu:22.04:LTSlinux-riscv5.15.0-1011.12, 0, 5.13.0-1004.4
Ubuntu:16.04:LTSlinux-gke0, 4.4.0-1012.12, 4.4.0-1010.10
Ubuntu:20.04:LTSlinux-gke0, 5.4.0-1091.98, 5.4.0-1090.97
Ubuntu:18.04:LTSlinux-gcp5.0.0-1025.26~18.04.1, 5.0.0-1026.27~18.04.1, 5.0.0-1028.29~18.04.1
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1064.67+cvm1.1, 0, 5.4.0-1063.66+cvm2.2
Ubuntu:22.04:LTSlinux-realtime0, 5.15.0-1032.35
Ubuntu:20.04:LTSlinux-raspi20, 5.3.0-1007.8, 5.3.0-1014.16

…and 1 more

Timeline

References

Open in Interactive Console →