Security Advisory

CVE-2022-40133

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-09-09 14:39:51
Last updated 2024-09-17 03:49:24
Assigner Anolis
CVSS score 6.3
State PUBLISHED

Description

A use-after-free(UAF) vulnerability was found in function 'vmw_execbuf_tie_context' in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in Linux kernel's vmwgfx driver with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system to gain privilege, causing a denial of service(DoS).