In the Linux kernel, the following vulnerability has been resolved:
fbdev: sis: Error out if pixclock equals zero
The userspace program could pass any values to the driver through
ioctl() interface. If the driver doesn't check the value of pixclock,
it may cause divide-by-zero error.
In sisfb_check_var(), var->pixclock is used as a divisor to caculate
drate before it is checked against zero. Fix this by checking it
at the beginning.
This is similar to CVE-2022-3061 in i740fb which was fixed by
commit 15cf0b8.
Metrics
Affected Vendors & Products
References
History
Tue, 05 Nov 2024 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
MITRE
Status: PUBLISHED
Assigner: Linux
Published: 2024-04-03T17:01:02.935Z
Updated: 2024-11-05T09:15:37.485Z
Reserved: 2024-02-19T14:20:24.177Z
Link: CVE-2024-26777
Vulnrichment
Updated: 2024-05-23T19:01:21.763Z
NVD
Status : Awaiting Analysis
Published: 2024-04-03T17:15:53.303
Modified: 2024-11-05T10:15:49.030
Link: CVE-2024-26777
Redhat