*** This bug is a security vulnerability ***

Public security bug reported:

The Radeon GPU drivers in the Linux kernel before 2.6.38-rc5 do not
properly validate data related to the AA resolve registers, which allows
local users to write to arbitrary memory locations associated with (1)
Video RAM (aka VRAM) or (2) the Graphics Translation Table (GTT) via
crafted values.

** Affects: linux (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: linux-fsl-imx51 (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: linux-lts-backport-maverick (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: linux-mvl-dove (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: linux-ti-omap4 (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: linux (Ubuntu Lucid)
     Importance: Undecided
         Status: New

** Affects: linux-fsl-imx51 (Ubuntu Lucid)
     Importance: Undecided
         Status: New

** Affects: linux-lts-backport-maverick (Ubuntu Lucid)
     Importance: Undecided
         Status: New

** Affects: linux-mvl-dove (Ubuntu Lucid)
     Importance: Undecided
         Status: New

** Affects: linux-ti-omap4 (Ubuntu Lucid)
     Importance: Undecided
         Status: New

** Affects: linux (Ubuntu Maverick)
     Importance: Undecided
         Status: New

** Affects: linux-fsl-imx51 (Ubuntu Maverick)
     Importance: Undecided
         Status: New

** Affects: linux-lts-backport-maverick (Ubuntu Maverick)
     Importance: Undecided
         Status: New

** Affects: linux-mvl-dove (Ubuntu Maverick)
     Importance: Undecided
         Status: New

** Affects: linux-ti-omap4 (Ubuntu Maverick)
     Importance: Undecided
         Status: New

** Affects: linux (Ubuntu Natty)
     Importance: Undecided
         Status: New

** Affects: linux-fsl-imx51 (Ubuntu Natty)
     Importance: Undecided
         Status: New

** Affects: linux-lts-backport-maverick (Ubuntu Natty)
     Importance: Undecided
         Status: New

** Affects: linux-mvl-dove (Ubuntu Natty)
     Importance: Undecided
         Status: New

** Affects: linux-ti-omap4 (Ubuntu Natty)
     Importance: Undecided
         Status: New

** Affects: linux (Ubuntu Dapper)
     Importance: Undecided
         Status: New

** Affects: linux-fsl-imx51 (Ubuntu Dapper)
     Importance: Undecided
         Status: New

** Affects: linux-lts-backport-maverick (Ubuntu Dapper)
     Importance: Undecided
         Status: New

** Affects: linux-mvl-dove (Ubuntu Dapper)
     Importance: Undecided
         Status: New

** Affects: linux-ti-omap4 (Ubuntu Dapper)
     Importance: Undecided
         Status: New

** Affects: linux (Ubuntu Hardy)
     Importance: Undecided
         Status: New

** Affects: linux-fsl-imx51 (Ubuntu Hardy)
     Importance: Undecided
         Status: New

** Affects: linux-lts-backport-maverick (Ubuntu Hardy)
     Importance: Undecided
         Status: New

** Affects: linux-mvl-dove (Ubuntu Hardy)
     Importance: Undecided
         Status: New

** Affects: linux-ti-omap4 (Ubuntu Hardy)
     Importance: Undecided
         Status: New

** Affects: linux (Ubuntu Karmic)
     Importance: Undecided
         Status: New

** Affects: linux-fsl-imx51 (Ubuntu Karmic)
     Importance: Undecided
         Status: New

** Affects: linux-lts-backport-maverick (Ubuntu Karmic)
     Importance: Undecided
         Status: New

** Affects: linux-mvl-dove (Ubuntu Karmic)
     Importance: Undecided
         Status: New

** Affects: linux-ti-omap4 (Ubuntu Karmic)
     Importance: Undecided
         Status: New

** This bug has been flagged as a security vulnerability

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2011-1016

** Also affects: linux (Ubuntu Natty)
   Importance: Undecided
       Status: New

** Also affects: linux-fsl-imx51 (Ubuntu Natty)
   Importance: Undecided
       Status: New

** Also affects: linux-lts-backport-maverick (Ubuntu Natty)
   Importance: Undecided
       Status: New

** Also affects: linux-mvl-dove (Ubuntu Natty)
   Importance: Undecided
       Status: New

** Also affects: linux-ti-omap4 (Ubuntu Natty)
   Importance: Undecided
       Status: New

** Also affects: linux (Ubuntu Maverick)
   Importance: Undecided
       Status: New

** Also affects: linux-fsl-imx51 (Ubuntu Maverick)
   Importance: Undecided
       Status: New

** Also affects: linux-lts-backport-maverick (Ubuntu Maverick)
   Importance: Undecided
       Status: New

** Also affects: linux-mvl-dove (Ubuntu Maverick)
   Importance: Undecided
       Status: New

** Also affects: linux-ti-omap4 (Ubuntu Maverick)
   Importance: Undecided
       Status: New

** Also affects: linux (Ubuntu Lucid)
   Importance: Undecided
       Status: New

** Also affects: linux-fsl-imx51 (Ubuntu Lucid)
   Importance: Undecided
       Status: New

** Also affects: linux-lts-backport-maverick (Ubuntu Lucid)
   Importance: Undecided
       Status: New

** Also affects: linux-mvl-dove (Ubuntu Lucid)
   Importance: Undecided
       Status: New

** Also affects: linux-ti-omap4 (Ubuntu Lucid)
   Importance: Undecided
       Status: New

** Also affects: linux (Ubuntu Karmic)
   Importance: Undecided
       Status: New

** Also affects: linux-fsl-imx51 (Ubuntu Karmic)
   Importance: Undecided
       Status: New

** Also affects: linux-lts-backport-maverick (Ubuntu Karmic)
   Importance: Undecided
       Status: New

** Also affects: linux-mvl-dove (Ubuntu Karmic)
   Importance: Undecided
       Status: New

** Also affects: linux-ti-omap4 (Ubuntu Karmic)
   Importance: Undecided
       Status: New

** Also affects: linux (Ubuntu Hardy)
   Importance: Undecided
       Status: New

** Also affects: linux-fsl-imx51 (Ubuntu Hardy)
   Importance: Undecided
       Status: New

** Also affects: linux-lts-backport-maverick (Ubuntu Hardy)
   Importance: Undecided
       Status: New

** Also affects: linux-mvl-dove (Ubuntu Hardy)
   Importance: Undecided
       Status: New

** Also affects: linux-ti-omap4 (Ubuntu Hardy)
   Importance: Undecided
       Status: New

** Also affects: linux (Ubuntu Dapper)
   Importance: Undecided
       Status: New

** Also affects: linux-fsl-imx51 (Ubuntu Dapper)
   Importance: Undecided
       Status: New

** Also affects: linux-lts-backport-maverick (Ubuntu Dapper)
   Importance: Undecided
       Status: New

** Also affects: linux-mvl-dove (Ubuntu Dapper)
   Importance: Undecided
       Status: New

** Also affects: linux-ti-omap4 (Ubuntu Dapper)
   Importance: Undecided
       Status: New

** Description changed:

- Placeholder
+ The Radeon GPU drivers in the Linux kernel before 2.6.38-rc5 do not
+ properly validate data related to the AA resolve registers, which allows
+ local users to write to arbitrary memory locations associated with (1)
+ Video RAM (aka VRAM) or (2) the Graphics Translation Table (GTT) via
+ crafted values.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/745686

Title:
  CVE-2011-1016

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to