UBUNTU-CVE-2022-36402
Dashboard / Vulnerabilities / UBUNTU-CVE-2022-36402
UBUNTU-CVE-2022-36402
Summary:
Details: An integer overflow vulnerability was found in vmwgfx driver in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in GPU component of Linux kernel with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system to gain privilege, causing a denial of service(DoS).
References: https://ubuntu.com/security/CVE-2022-36402, https://www.cve.org/CVERecord?id=CVE-2022-36402, https://ubuntu.com/security/notices/USN-7088-1, https://ubuntu.com/security/notices/USN-7088-2, https://ubuntu.com/security/notices/USN-7088-3, https://ubuntu.com/security/notices/USN-7088-4, https://ubuntu.com/security/notices/USN-7088-5, https://ubuntu.com/security/notices/USN-7119-1, https://ubuntu.com/security/notices/USN-7183-1, https://ubuntu.com/security/notices/USN-7184-1, https://ubuntu.com/security/notices/USN-7185-1, https://ubuntu.com/security/notices/USN-7185-2
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
