PT-2022-4757 · Linux+6 · Linux Kernel+6
Ezrak1E
+1
·
Published
2022-09-09
·
Updated
2026-05-26
·
CVE-2022-38457
CVSS v2.0
8.5
High
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel's vmwgfx driver (affected versions not specified)
Description
A use-after-free (UAF) vulnerability was found in the
vmw cmd res check function in drivers/gpu/vmxgfx/vmxgfx execbuf.c. This flaw allows a local attacker with a user account on the system to gain privilege, causing a denial of service (DoS). The vulnerability is related to the device file /dev/dri/renderD128 (or Dxxx).Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Almalinux
Centos
Debian
Linux Kernel
Red Hat
Suse