In the Linux kernel, the following vulnerability has been resolved:
drm/vmwgfx: Validate the box size for the snooped cursor
Invalid userspace dma surface copies could potentially overflow
the memcpy from the surface to the snooped image leading to crashes.
To fix it the dimensions of the copybox have to be validated
against the expected size of the snooped cursor.
drm/vmwgfx: Validate the box size for the snooped cursor
Invalid userspace dma surface copies could potentially overflow
the memcpy from the surface to the snooped image leading to crashes.
To fix it the dimensions of the copybox have to be validated
against the expected size of the snooped cursor.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 01 Oct 2025 12:00:00 +0000

Status: PUBLISHED
Assigner: Linux
Published:
Updated: 2025-10-01T11:42:16.567Z
Reserved: 2025-09-17T14:53:07.010Z
Link: CVE-2022-50440

No data.

Status : Received
Published: 2025-10-01T12:15:36.133
Modified: 2025-10-01T12:15:36.133
Link: CVE-2022-50440

No data.

No data.