oss-sec mailing list archives

CVE-2021-33655: Linux kernel: When sending malicous data to kernel by ioctl cmd FBIOPUT_VSCREENINFO,kernel will write memory out of bounds.(5.18 5.19.0-rc1)


From: "Weigang (Jimmy)" <weigang12 () huawei com>
Date: Tue, 19 Jul 2022 02:10:42 +0000

Fix has been released by Linux kernel upstream in 5.19-rc7: 
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=086ff84617185393a0bbf25830c4f36412a7d3f4.

Current thread: