UBUNTU-CVE-2023-4969
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-4969
Summary:
Details: A GPU kernel can read sensitive data from another GPU kernel (even from another user or app) through an optimized GPU memory region called _local memory_ on various architectures.
References: https://ubuntu.com/security/CVE-2023-4969, https://registry.khronos.org/OpenCL/specs/3.0-unified/html/OpenCL_API.html#_fundamental_memory_regions, https://registry.khronos.org/vulkan/specs/1.3-extensions/html/index.html, https://kb.cert.org/vuls/id/446598, https://blog.trailofbits.com, https://www.kb.cert.org/vuls/id/446598, https://www.amd.com/en/resources/product-security/bulletin/amd-sb-6010.html, https://www.cve.org/CVERecord?id=CVE-2023-4969
Affected packages
Package
Name: linux-firmware
Purl: pkg:deb/ubuntu/linux-firmware?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
