https://bugs.freedesktop.org/show_bug.cgi?id=103689

Ilia Mirkin <imir...@alum.mit.edu> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
           Severity|critical                    |minor
            Summary|there is an exploitable     |WARN on
                   |page fault that can be      |nouveau_bo_move_ntfy when
                   |reliably triggered from the |allocating new bo
                   |chromium sandbox can        |
                   |possibly lead to remote     |
                   |attackers causing a denial  |
                   |of service condition or     |
                   |possibly running system     |
                   |code.                       |

--- Comment #2 from Ilia Mirkin <imir...@alum.mit.edu> ---
If you're using anything but the latest software, you need to report this issue
to the people relesing the software.

This is the upstream bugtracker, which only deals in latest versions. 4.10 was
released 6+ months ago, and who knows what horrid things are in the Ubuntu
tree. Similarly, you should ensure you have the very latest mesa.

Lastly, you have provided no evidence of a page fault, just a WARN somewhere in
the code. (Which isn't great, but it's quite different.)

-- 
You are receiving this mail because:
You are the assignee for the bug.
You are on the CC list for the bug.
_______________________________________________
Nouveau mailing list
Nouveau@lists.freedesktop.org
https://lists.freedesktop.org/mailman/listinfo/nouveau

Reply via email to