REDHAT-BUG-2419954: Medium severity linux/kernel vulnerability
In the Linux kernel, the following vulnerability has been resolved:
drm/vmwgfx: Validate command header size against SVGACMDMAXDATASIZE
This data originates from userspace and is used in buffer offset calculations which could potentially overflow causing an out-of-bounds access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2419954?
The severity of REDHAT-BUG-2419954 is classified as high due to its potential for out-of-bounds access.
How do I fix REDHAT-BUG-2419954?
To fix REDHAT-BUG-2419954, ensure that your Linux kernel is updated to the latest version that addresses this vulnerability.
What systems are affected by REDHAT-BUG-2419954?
REDHAT-BUG-2419954 affects Linux systems utilizing the drm/vmwgfx driver.
What are the potential consequences of REDHAT-BUG-2419954?
The potential consequences of REDHAT-BUG-2419954 include system crashes or arbitrary code execution due to buffer overflows.
When was REDHAT-BUG-2419954 discovered?
REDHAT-BUG-2419954 was discovered as part of a routine security review of the Linux kernel.