CVE-2018-20669

An issue where a provided address with access_ok() is not checked was discovered in i915_gem_execbuffer2_ioctl in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the Linux kernel through 4.19.13. A local attacker can craft a malicious IOCTL function call to overwrite arbitrary kernel memory, resulting in a Denial of Service or privilege escalation.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*

Configuration 3 (hide)

OR cpe:2.3:a:netapp:hci_management_node:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:snapprotect:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:solidfire:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:netapp:cn1610_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:netapp:cn1610:-:*:*:*:*:*:*:*

History

11 Apr 2023, 18:16

Type Values Removed Values Added
References (BID) http://www.securityfocus.com/bid/106748 - Broken Link (BID) http://www.securityfocus.com/bid/106748 - Broken Link, Third Party Advisory, VDB Entry

20 Jan 2023, 15:50

Type Values Removed Values Added
First Time Netapp cn1610
Canonical
Netapp
Netapp solidfire
Netapp cn1610 Firmware
Canonical ubuntu Linux
Netapp snapprotect
Netapp hci Management Node
CPE cpe:2.3:a:netapp:solidfire:-:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
cpe:2.3:o:netapp:cn1610_firmware:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:hci_management_node:-:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*
cpe:2.3:h:netapp:cn1610:-:*:*:*:*:*:*:*
cpe:2.3:a:netapp:snapprotect:-:*:*:*:*:*:*:*
References (CONFIRM) https://support.f5.com/csp/article/K32059550 - (CONFIRM) https://support.f5.com/csp/article/K32059550 - Third Party Advisory
References (BID) http://www.securityfocus.com/bid/106748 - Third Party Advisory, VDB Entry (BID) http://www.securityfocus.com/bid/106748 - Broken Link
References (UBUNTU) https://usn.ubuntu.com/4485-1/ - (UBUNTU) https://usn.ubuntu.com/4485-1/ - Third Party Advisory
References (MISC) http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/log/drivers/gpu/drm/i915/i915_gem_execbuffer.c - Release Notes, Vendor Advisory (MISC) http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/log/drivers/gpu/drm/i915/i915_gem_execbuffer.c - Vendor Advisory, Release Notes
References (CONFIRM) https://security.netapp.com/advisory/ntap-20190404-0002/ - (CONFIRM) https://security.netapp.com/advisory/ntap-20190404-0002/ - Third Party Advisory

Information

Published : 2019-03-21 16:00

Updated : 2023-12-10 12:59


NVD link : CVE-2018-20669

Mitre link : CVE-2018-20669

CVE.ORG link : CVE-2018-20669


JSON object : View

Products Affected

netapp

  • cn1610
  • snapprotect
  • hci_management_node
  • solidfire
  • cn1610_firmware

linux

  • linux_kernel

canonical

  • ubuntu_linux
CWE
CWE-20

Improper Input Validation