Security Advisory

CVE-2018-8781

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-04-23 19:00:00
Last updated 2024-09-16 23:56:54
Assigner checkpoint
CVSS score not scored
State PUBLISHED

Description

The udl_fb_mmap function in drivers/gpu/drm/udl/udl_fb.c at the Linux kernel version 3.4 and up to and including 4.15 has an integer-overflow vulnerability allowing local users with access to the udldrmfb driver to obtain full read and write permissions on kernel physical pages, resulting in a code execution in kernel space.