Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r3gf-pg53-xqph

Опубликовано: 13 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.

The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.

EPSS

Процентиль: 94%
0.13103
Средний

7.8 High

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 1 года назад

The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.

CVSS3: 7
redhat
больше 3 лет назад

The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.

CVSS3: 7.8
nvd
больше 1 года назад

The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.

CVSS3: 7.8
debian
больше 1 года назад

The vmwgfx driver contains a local privilege escalation vulnerability ...

CVSS3: 7
fstec
больше 3 лет назад

Уязвимость функции vmw_execbuf_copy_fence_user() (drivers/gpu/drm/vmwgfx/vmwgfx_execbuf.c) модуля vmwgfx ядра операционных систем Linux, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 94%
0.13103
Средний

7.8 High

CVSS3

Дефекты

CWE-416