2024-06-03 10:03:32 +00:00
{
"id" : "CVE-2024-36960" ,
"sourceIdentifier" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67" ,
"published" : "2024-06-03T08:15:09.557" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-21T09:22:54.847" ,
2024-06-03 16:03:31 +00:00
"vulnStatus" : "Awaiting Analysis" ,
2024-07-03 04:04:51 +00:00
"cveTags" : [ ] ,
2024-06-03 10:03:32 +00:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/vmwgfx: Fix invalid reads in fence signaled events\n\nCorrectly set the length of the drm_event to the size of the structure\nthat's actually used.\n\nThe length of the drm_event was set to the parent structure instead of\nto the drm_vmw_event_fence which is supposed to be read. drm_read\nuses the length parameter to copy the event to the user space thus\nresuling in oob reads."
2024-06-03 16:03:31 +00:00
} ,
{
"lang" : "es" ,
"value" : "En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: drm/vmwgfx: corrige lecturas no v\u00e1lidas en eventos se\u00f1alizados de valla establezca correctamente la longitud de drm_event al tama\u00f1o de la estructura que realmente se utiliza. La longitud de drm_event se configur\u00f3 en la estructura principal en lugar de en drm_vmw_event_fence que se supone debe leerse. drm_read usa el par\u00e1metro de longitud para copiar el evento al espacio del usuario, lo que resulta en lecturas oob."
2024-06-03 10:03:32 +00:00
}
] ,
"metrics" : { } ,
2024-07-03 04:04:51 +00:00
"weaknesses" : [
{
"source" : "134c704f-9b21-4f2e-91b3-4a467353bcc0" ,
"type" : "Secondary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-125"
}
]
}
] ,
2024-06-03 10:03:32 +00:00
"references" : [
{
"url" : "https://git.kernel.org/stable/c/0dbfc73670b357456196130551e586345ca48e1b" ,
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
} ,
{
"url" : "https://git.kernel.org/stable/c/2f527e3efd37c7c5e85e8aa86308856b619fa59f" ,
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
} ,
{
"url" : "https://git.kernel.org/stable/c/3cd682357c6167f636aec8ac0efaa8ba61144d36" ,
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
} ,
{
"url" : "https://git.kernel.org/stable/c/7b5fd3af4a250dd0a2a558e07b43478748eb5d22" ,
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
} ,
{
"url" : "https://git.kernel.org/stable/c/a37ef7613c00f2d72c8fc08bd83fb6cc76926c8c" ,
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
} ,
{
"url" : "https://git.kernel.org/stable/c/b7bab33c4623c66e3398d5253870d4e88c52dfc0" ,
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
} ,
{
"url" : "https://git.kernel.org/stable/c/cef0962f2d3e5fd0660c8efb72321083a1b531a9" ,
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
} ,
{
"url" : "https://git.kernel.org/stable/c/deab66596dfad14f1c54eeefdb72428340d72a77" ,
"source" : "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://git.kernel.org/stable/c/0dbfc73670b357456196130551e586345ca48e1b" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://git.kernel.org/stable/c/2f527e3efd37c7c5e85e8aa86308856b619fa59f" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://git.kernel.org/stable/c/3cd682357c6167f636aec8ac0efaa8ba61144d36" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://git.kernel.org/stable/c/7b5fd3af4a250dd0a2a558e07b43478748eb5d22" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://git.kernel.org/stable/c/a37ef7613c00f2d72c8fc08bd83fb6cc76926c8c" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://git.kernel.org/stable/c/b7bab33c4623c66e3398d5253870d4e88c52dfc0" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://git.kernel.org/stable/c/cef0962f2d3e5fd0660c8efb72321083a1b531a9" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://git.kernel.org/stable/c/deab66596dfad14f1c54eeefdb72428340d72a77" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://lists.debian.org/debian-lts-announce/2024/06/msg00019.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
2024-06-03 10:03:32 +00:00
}
]
}