CVE-2015-7884
published 2015-12-28CVE-2015-7884: The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the Linux kernel through 4.3.3 does not initialize a certain structure member, which…
PriorityP46low2.3CVSS 3.0
AVLACLPRHUINSUCLINAN
EPSS
0.44%
36.3th percentile
The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the Linux kernel through 4.3.3 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory via a crafted application.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 4.2.6-1 (bookworm) | linux 4.2.6-1 (bookworm) |
| linux | linux_kernel | <= 4.3.2 | — |
| linux | linux_kernel | >= 0 < 4.2.6-1 | 4.2.6-1 |
| linux | linux_kernel | >= 0 < 4.2.6-1 | 4.2.6-1 |
| linux | linux_kernel | >= 0 < 4.2.6-1 | 4.2.6-1 |
| linux | linux_kernel | >= 0 < 4.2.6-1 | 4.2.6-1 |
CVSS provenance
nvdv3.02.3LOWCVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
osv4.9MEDIUM
vendor_ubuntu4.9MEDIUM
vendor_debian2.3LOW
vendor_redhat2.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel (Wily HWE) vulnerabilities
vendor_ubuntu·2015-12-17·CVSS 4.9
CVE-2015-7799 [MEDIUM] Linux kernel (Wily HWE) vulnerabilities
Title: Linux kernel (Wily HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Jan Beulich discovered that the KVM svm hypervisor implementation in the
Linux kernel did not properly catch Debug exceptions on AMD processors. An
attacker in a guest virtual machine could use this to cause a denial of
service (system crash) in the host OS. (CVE-2015-8104)
郭永刚 discovered that the ppp implementation in the Linux kernel did
not ensure that certain slot numbers are valid. A local attacker with the
privilege to call ioctl() on /dev/ppp could cause a denial of service
(system crash). (CVE-2015-7799)
Dmitry Vyukov discovered that the Linux kernel's keyring handler attempted
to garbage collect incompletely instantiated keys. A local unprivileged
attacker could use this t
Ubuntu
Linux kernel (Vivid HWE) vulnerabilities
vendor_ubuntu·2015-12-17·CVSS 4.9
CVE-2015-7799 [MEDIUM] Linux kernel (Vivid HWE) vulnerabilities
Title: Linux kernel (Vivid HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Jan Beulich discovered that the KVM svm hypervisor implementation in the
Linux kernel did not properly catch Debug exceptions on AMD processors. An
attacker in a guest virtual machine could use this to cause a denial of
service (system crash) in the host OS. (CVE-2015-8104)
郭永刚 discovered that the ppp implementation in the Linux kernel did
not ensure that certain slot numbers are valid. A local attacker with the
privilege to call ioctl() on /dev/ppp could cause a denial of service
(system crash). (CVE-2015-7799)
It was discovered that the virtual video osd test driver in the Linux
kernel did not properly initialize data structures. A local attacker could
use this to obtain sensiti
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2015-12-17·CVSS 4.9
CVE-2015-7799 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Jan Beulich discovered that the KVM svm hypervisor implementation in the
Linux kernel did not properly catch Debug exceptions on AMD processors. An
attacker in a guest virtual machine could use this to cause a denial of
service (system crash) in the host OS. (CVE-2015-8104)
郭永刚 discovered that the ppp implementation in the Linux kernel did
not ensure that certain slot numbers are valid. A local attacker with the
privilege to call ioctl() on /dev/ppp could cause a denial of service
(system crash). (CVE-2015-7799)
Dmitry Vyukov discovered that the Linux kernel's keyring handler attempted
to garbage collect incompletely instantiated keys. A local unprivileged
attacker could use this to cause a d
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2015-12-17·CVSS 4.9
CVE-2015-7799 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Jan Beulich discovered that the KVM svm hypervisor implementation in the
Linux kernel did not properly catch Debug exceptions on AMD processors. An
attacker in a guest virtual machine could use this to cause a denial of
service (system crash) in the host OS. (CVE-2015-8104)
郭永刚 discovered that the ppp implementation in the Linux kernel did
not ensure that certain slot numbers are valid. A local attacker with the
privilege to call ioctl() on /dev/ppp could cause a denial of service
(system crash). (CVE-2015-7799)
It was discovered that the virtual video osd test driver in the Linux
kernel did not properly initialize data structures. A local attacker could
use this to obtain sensitive informati
Red Hat
kernel: media/vivid-osd: information leak in ioctl
vendor_redhat·2015-10-21·CVSS 2.3
CVE-2015-7884 [LOW] CWE-200 kernel: media/vivid-osd: information leak in ioctl
kernel: media/vivid-osd: information leak in ioctl
The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the Linux kernel through 4.3.3 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory via a crafted application.
Statement: This issue does not affect the Linux kernel packages as shipped with Red Hat Enterprise Linux 5, 6, 7 and MRG-2 as the code with the flaw is not present in the products listed.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: realtime-kernel (Red Hat Enterprise MRG 2) -
Debian
CVE-2015-7884: linux - The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the L...
vendor_debian·2015·CVSS 2.3
CVE-2015-7884 [LOW] CVE-2015-7884: linux - The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the L...
The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the Linux kernel through 4.3.3 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory via a crafted application.
Scope: local
bookworm: resolved (fixed in 4.2.6-1)
bullseye: resolved (fixed in 4.2.6-1)
forky: resolved (fixed in 4.2.6-1)
sid: resolved (fixed in 4.2.6-1)
trixie: resolved (fixed in 4.2.6-1)
GHSA
GHSA-3w2j-jf2v-w2v3: The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd
ghsa_unreviewed·2022-05-17
CVE-2015-7884 [LOW] CWE-200 GHSA-3w2j-jf2v-w2v3: The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd
The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the Linux kernel through 4.3.3 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory via a crafted application.
OSV
CVE-2015-7884: The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd
osv·2015-12-28·CVSS 2.3
CVE-2015-7884 [LOW] CVE-2015-7884: The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd
The vivid_fb_ioctl function in drivers/media/platform/vivid/vivid-osd.c in the Linux kernel through 4.3.3 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel memory via a crafted application.
OSV
linux-lts-wily vulnerabilities
osv·2015-12-17·CVSS 4.9
CVE-2015-8104 [MEDIUM] linux-lts-wily vulnerabilities
linux-lts-wily vulnerabilities
Jan Beulich discovered that the KVM svm hypervisor implementation in the
Linux kernel did not properly catch Debug exceptions on AMD processors. An
attacker in a guest virtual machine could use this to cause a denial of
service (system crash) in the host OS. (CVE-2015-8104)
郭永刚 discovered that the ppp implementation in the Linux kernel did
not ensure that certain slot numbers are valid. A local attacker with the
privilege to call ioctl() on /dev/ppp could cause a denial of service
(system crash). (CVE-2015-7799)
Dmitry Vyukov discovered that the Linux kernel's keyring handler attempted
to garbage collect incompletely instantiated keys. A local unprivileged
attacker could use this to cause a denial of service (system crash).
(CVE-2015-7872)
It was discover
OSV
linux-lts-vivid vulnerabilities
osv·2015-12-17·CVSS 4.9
CVE-2015-8104 [MEDIUM] linux-lts-vivid vulnerabilities
linux-lts-vivid vulnerabilities
Jan Beulich discovered that the KVM svm hypervisor implementation in the
Linux kernel did not properly catch Debug exceptions on AMD processors. An
attacker in a guest virtual machine could use this to cause a denial of
service (system crash) in the host OS. (CVE-2015-8104)
郭永刚 discovered that the ppp implementation in the Linux kernel did
not ensure that certain slot numbers are valid. A local attacker with the
privilege to call ioctl() on /dev/ppp could cause a denial of service
(system crash). (CVE-2015-7799)
It was discovered that the virtual video osd test driver in the Linux
kernel did not properly initialize data structures. A local attacker could
use this to obtain sensitive information from the kernel. (CVE-2015-7884)
It was discovered that the
No detection rules found.
Bugzilla
CVE-2015-7884 kernel: media/vivid-osd: information leak in ioctl
bugzilla·2015-10-23·CVSS 2.3
CVE-2015-7884 [LOW] CVE-2015-7884 kernel: media/vivid-osd: information leak in ioctl
CVE-2015-7884 kernel: media/vivid-osd: information leak in ioctl
An information leak flaw was found in Linux kernel for systems using Vivid! display drivers in framebuffer mode. 16 bytes of memory is not zeroed and may leak from userspace to a user at the console.
Original report:
http://seclists.org/oss-sec/2015/q4/115
Upstream patch:
http://git.kernel.org/cgit/linux/kernel/git/next/linux-next.git/commit/?id=eda98796aff0d9bf41094b06811f5def3b4c333c
Discussion:
Created kernel tracking bugs for this issue:
Affects: fedora-all [bug 1274730]
---
This requires CONFIG_VIDEO_VIVID to be enabled. None of the Fedora kernels have this driver enabled.
---
Statement:
This issue does not affect the Linux kernel packages as shipped with Red Hat Enterprise Linux 5, 6, 7 and MRG-2 as the cod
Bugzilla
CVE-2015-7884 CVE-2015-7885 kernel: various flaws [fedora-all]
bugzilla·2015-10-23·CVSS 2.3
CVE-2015-7884 [LOW] CVE-2015-7884 CVE-2015-7885 kernel: various flaws [fedora-all]
CVE-2015-7884 CVE-2015-7885 kernel: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedora. While o
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=eda98796aff0d9bf41094b06811f5def3b4c333chttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00015.htmlhttp://www.openwall.com/lists/oss-security/2015/10/21/8http://www.securityfocus.com/bid/77317http://www.securitytracker.com/id/1034893http://www.ubuntu.com/usn/USN-2842-1http://www.ubuntu.com/usn/USN-2842-2http://www.ubuntu.com/usn/USN-2843-1http://www.ubuntu.com/usn/USN-2843-2http://www.ubuntu.com/usn/USN-2843-3https://bugzilla.redhat.com/show_bug.cgi?id=1274726https://github.com/torvalds/linux/commit/eda98796aff0d9bf41094b06811f5def3b4c333chttp://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=eda98796aff0d9bf41094b06811f5def3b4c333chttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00015.htmlhttp://www.openwall.com/lists/oss-security/2015/10/21/8http://www.securityfocus.com/bid/77317http://www.securitytracker.com/id/1034893http://www.ubuntu.com/usn/USN-2842-1http://www.ubuntu.com/usn/USN-2842-2http://www.ubuntu.com/usn/USN-2843-1http://www.ubuntu.com/usn/USN-2843-2http://www.ubuntu.com/usn/USN-2843-3https://bugzilla.redhat.com/show_bug.cgi?id=1274726https://github.com/torvalds/linux/commit/eda98796aff0d9bf41094b06811f5def3b4c333c
2015-12-28
Published