PT-2014-3987 · Linux · Linux Kernel

Published

2014-08-01

·

Updated

2015-12-04

·

CVE-2014-0972

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions 3.x
Description The issue is related to the kgsl graphics driver, which does not properly restrict write access to IOMMU context registers. This allows local users to select a custom page table and write to arbitrary memory locations by using a crafted GPU command stream to modify the contents of a certain register.
Recommendations For Linux kernel version 3.x, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-0972

Affected Products

Linux Kernel