CVE-2022-40133

CVSS v3.1 5.5 (Medium)
55% Progress
EPSS 0.04 % (5th)
0.04% Progress
Affected Products 1
Advisories 13

A use-after-free(UAF) vulnerability was found in function 'vmw_execbuf_tie_context' in drivers/gpu/vmxgfx/vmxgfx_execbuf.c in Linux kernel's vmwgfx driver with device file '/dev/dri/renderD128 (or Dxxx)'. This flaw allows a local attacker with a user account on the system to gain privilege, causing a denial of service(DoS).

Weaknesses
CWE-416
Use After Free
CVE Status
PUBLISHED
CNA
OpenAnolis
Published Date
2022-09-09 15:15:15
(2 years ago)
Updated Date
2023-04-17 16:44:56
(17 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel from 4.20 version and prior 6.1.7 version cpe:2.3:o:linux:linux_kernel >= 4.20 < 6.1.7
  Linux Kernel 6.2 Rc1 cpe:2.3:o:linux:linux_kernel:6.2:rc1
  Linux Kernel 6.2 Rc2 cpe:2.3:o:linux:linux_kernel:6.2:rc2
  Linux Kernel 6.2 Rc3 cpe:2.3:o:linux:linux_kernel:6.2:rc3
  Linux Kernel 6.2 Rc4 cpe:2.3:o:linux:linux_kernel:6.2:rc4
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...