CVE 2014-0972
The kgsl graphics driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly prevent write access to IOMMU context registers, which allows local users to select a custom page table, and consequently write to arbitrary memory locations, by using a crafted GPU command stream to modify the contents of a certain register.
Related bugs and status
CVE-2014-0972 (Candidate) is related to these bugs:
Bug #1354019: CVE-2014-0972
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
1354019 | CVE-2014-0972 | linux (Ubuntu) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-fsl-imx51 (Ubuntu) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-mvl-dove (Ubuntu) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-backport-maverick (Ubuntu) | Undecided | New | ||
1354019 | CVE-2014-0972 | linux-lts-backport-natty (Ubuntu) | Undecided | New | ||
1354019 | CVE-2014-0972 | linux-ti-omap4 (Ubuntu) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-ec2 (Ubuntu) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-backport-maverick (Ubuntu Utopic) | Undecided | Won't Fix | ||
1354019 | CVE-2014-0972 | linux-lts-backport-natty (Ubuntu Utopic) | Undecided | Won't Fix | ||
1354019 | CVE-2014-0972 | linux (Ubuntu Trusty) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-ec2 (Ubuntu Trusty) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-fsl-imx51 (Ubuntu Trusty) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-backport-maverick (Ubuntu Trusty) | Undecided | New | ||
1354019 | CVE-2014-0972 | linux-lts-backport-natty (Ubuntu Trusty) | Undecided | New | ||
1354019 | CVE-2014-0972 | linux-mvl-dove (Ubuntu Trusty) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-ti-omap4 (Ubuntu Trusty) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux (Ubuntu Precise) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-ec2 (Ubuntu Precise) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-fsl-imx51 (Ubuntu Precise) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-backport-maverick (Ubuntu Precise) | Undecided | Won't Fix | ||
1354019 | CVE-2014-0972 | linux-lts-backport-natty (Ubuntu Precise) | Undecided | Won't Fix | ||
1354019 | CVE-2014-0972 | linux-mvl-dove (Ubuntu Precise) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-ti-omap4 (Ubuntu Precise) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-backport-maverick (Ubuntu Lucid) | Undecided | Won't Fix | ||
1354019 | CVE-2014-0972 | linux-lts-backport-natty (Ubuntu Lucid) | Undecided | Won't Fix | ||
1354019 | CVE-2014-0972 | linux-armadaxp (Ubuntu) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-armadaxp (Ubuntu Precise) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-armadaxp (Ubuntu Trusty) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-saucy (Ubuntu) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-saucy (Ubuntu Precise) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-saucy (Ubuntu Trusty) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-quantal (Ubuntu) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-quantal (Ubuntu Precise) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-quantal (Ubuntu Trusty) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-raring (Ubuntu) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-raring (Ubuntu Precise) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-raring (Ubuntu Trusty) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-trusty (Ubuntu) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-trusty (Ubuntu Precise) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-trusty (Ubuntu Trusty) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux (Ubuntu Vivid) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-armadaxp (Ubuntu Vivid) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-ec2 (Ubuntu Vivid) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-fsl-imx51 (Ubuntu Vivid) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-backport-maverick (Ubuntu Vivid) | Undecided | New | ||
1354019 | CVE-2014-0972 | linux-lts-backport-natty (Ubuntu Vivid) | Undecided | New | ||
1354019 | CVE-2014-0972 | linux-lts-quantal (Ubuntu Vivid) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-raring (Ubuntu Vivid) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-saucy (Ubuntu Vivid) | High | Invalid | ||
1354019 | CVE-2014-0972 | linux-lts-trusty (Ubuntu Vivid) | High | Invalid |
See the
CVE page on Mitre.org
for more details.