CVE-2017-9605

Updated: 2023-12-06

CWE: Information Leak / Disclosure

Description:

The vmw_gb_surface_define_ioctl function (accessible via DRM_IOCTL_VMW_GB_SURFACE_CREATE) in drivers/gpu/drm/vmwgfx/vmwgfx_surface.c in the Linux kernel through 4.11.4 defines a backup_handle variable but does not give it an initial value. If one attempts to create a GB surface, with a previously allocated DMA buffer to be used as a backup buffer, the backup_handle variable does not get written to and is then later returned to user space, allowing local users to obtain sensitive information from uninitialized kernel memory via a crafted ioctl call.

CVSS3: 5.5


Vendor State

OS Vendor version Errata
Ubuntu 16.04 4.4.0-87.110 USN-3364-1
Ubuntu 14.04 3.13.0-125.174 USN-3360-1
Ubuntu 16.04 AWS 4.4.0-1026.35 USN-3364-3
Ubuntu 14.04 HWE 4.4.0-87.110~14.04.1 USN-3364-2
Debian 9 4.9.30-2+deb9u3 DSA-3927-1
Debian 8 3.16.43-2+deb8u3 DSA-3945-1
Debian 8 backports 4.9.30-2+deb9u3 DSA-3927-1
Oracle Linux 6 UEK 4 4.1.12-124.45.6.el6uek ELSA-2020-5962
Oracle Linux 7 UEK 4 4.1.12-124.45.6.el7uek ELSA-2020-5962
Ubuntu 16.04 (FIPS) 4.4.0-87.110 usn-3364-1

KernelCare State

OS Original kernel version State
Ubuntu 16.04
4.4.0-83.106 show all hide all
4.4.0-72.93 4.4.0-79.100 4.4.0-64.85 4.4.0-34.53 4.4.0-22.40 4.4.0-78.99 4.4.0-62.83 4.4.0-31.50 4.4.0-28.47 4.4.0-63.84 4.4.0-47.68 4.4.0-24.43 4.4.0-38.57 4.4.0-67.88 4.4.0-81.104 4.4.0-22.39 4.4.0-42.62 4.4.0-75.96 4.4.0-51.72 4.4.0-53.74 4.4.0-36.55 4.4.0-43.63 4.4.0-65.86 4.4.0-70.91 4.4.0-77.98 4.4.0-21.37 4.4.0-23.41 4.4.0-66.87 4.4.0-45.66 4.4.0-71.92 4.4.0-57.78 4.4.0-59.80
Released
Ubuntu 14.04
3.13.0-38.65 show all hide all
3.13.0-45.74 3.13.0-46.76 3.13.0-46.77 3.13.0-52.86 3.13.0-53.87 3.13.0-55.94 3.13.0-61.100 3.13.0-62.101 3.13.0-66.107 3.13.0-69.112 3.13.0-72.115 3.13.0-75.119 3.13.0-53.88 3.13.0-39.66 3.13.0-65.106 3.13.0-57.95 3.13.0-92.139 3.13.0-96.143 3.13.0-37.64 3.13.0-95.142 3.13.0-49.83 3.13.0-115.162 3.13.0-68.111 3.13.0-59.98 3.13.0-101.148 3.13.0-100.147 3.13.0-117.164 3.13.0-71.114 3.13.0-86.130 3.13.0-91.138 3.13.0-107.154 3.13.0-67.110 3.13.0-70.113 3.13.0-76.120 3.13.0-106.153 3.13.0-116.163 3.13.0-41.70 3.13.0-36.63 3.13.0-44.73 3.13.0-49.81 3.13.0-86.131 3.13.0-85.129 3.13.0-46.75 3.13.0-112.159 3.13.0-40.69 3.13.0-98.145 3.13.0-119.166 3.13.0-108.155 3.13.0-33.58 3.13.0-110.157 3.13.0-105.152 3.13.0-73.116 3.13.0-43.72 3.13.0-51.84 3.13.0-62.102 3.13.0-83.127 3.13.0-54.91 3.13.0-109.156 3.13.0-111.158 3.13.0-113.160 3.13.0-40.68 3.13.0-64.104 3.13.0-65.105 3.13.0-123.172 3.13.0-77.121 3.13.0-58.97 3.13.0-32.57 3.13.0-46.79 3.13.0-74.118 3.13.0-52.85 3.13.0-34.60 3.13.0-35.62 3.13.0-48.80 3.13.0-87.133 3.13.0-93.140 3.13.0-66.108 3.13.0-103.150 3.13.0-63.103 3.13.0-121.170 3.13.0-88.135 3.13.0-55.92 3.13.0-53.89 3.13.0-79.123
Released
Ubuntu 16.04 AWS
4.4.0-1020.29 show all hide all
4.4.0-1012.21 4.4.0-1017.26 4.4.0-1016.25 4.4.0-1013.22 4.4.0-1022.31 4.4.0-1018.27
Released
Ubuntu 14.04 HWE
4.4.0-21.37~14.04.1 show all hide all
4.4.0-71.92~14.04.1 4.4.0-34.53~14.04.1 4.4.0-79.100~14.04.1 4.4.0-51.72~14.04.1 4.4.0-63.84~14.04.2 4.4.0-81.104~14.04.1 4.4.0-66.87~14.04.1 4.4.0-53.74~14.04.1 4.4.0-28.47~14.04.1 4.4.0-57.78~14.04.1 4.4.0-78.99~14.04.2 4.4.0-62.83~14.04.1 4.4.0-64.85~14.04.1 4.4.0-24.43~14.04.1 4.4.0-47.68~14.04.1 4.4.0-83.106~14.04.1 4.4.0-31.50~14.04.1 4.4.0-42.62~14.04.1 4.4.0-38.57~14.04.1 4.4.0-72.93~14.04.1 4.4.0-22.40~14.04.1 4.4.0-23.41~14.04.1 4.4.0-65.86~14.04.1 4.4.0-70.91~14.04.1 4.4.0-75.96~14.04.1 4.4.0-36.55~14.04.1 4.4.0-59.80~14.04.1 4.4.0-67.88~14.04.1 4.4.0-45.66~14.04.1 4.4.0-22.39~14.04.1
Released
Debian 9
4.9.30-2+deb9u1 show all hide all
4.9.30-2+deb9u2 4.9.30-2
Released
Debian 8
3.16.7-ckt9-3~deb8u1 show all hide all
3.16.39-1+deb8u2 3.16.7-ckt11-1+deb8u2 3.16.7-ckt20-1+deb8u2 3.16.7-ckt11-1+deb8u3 3.16.7-ckt20-1+deb8u4 3.16.7-ckt25-2+deb8u2 3.16.36-1+deb8u2 3.16.7-ckt25-1 3.16.7-ckt11-1+deb8u4 3.16.7-ckt25-2 3.16.7-ckt11-1+deb8u5 3.16.7-ckt20-1+deb8u3 3.16.39-1 3.16.43-2+deb8u1 3.16.7-ckt11-1+deb8u6 3.16.43-2+deb8u2 3.16.7-ckt11-1+deb8u1 3.16.7-ckt25-2+deb8u1 3.16.43-2 3.16.39-1+deb8u1 3.16.7-ckt25-2+deb8u3 3.16.7-ckt11-1 3.16.36-1+deb8u1 3.16.7-ckt20-1+deb8u1
Released
Debian 8 backports
4.9.30-2+deb9u2~bpo8+1 show all hide all
4.9.30-2~bpo8+1
Released
Oracle Linux 6 UEK 4
4.1.12-124.23.2.el6uek show all hide all
4.1.12-124.14.1.el6uek 4.1.12-124.40.6.el6uek 4.1.12-124.21.1.el6uek 4.1.12-124.29.3.el6uek 4.1.12-124.32.3.el6uek 4.1.12-124.25.1.el6uek 4.1.12-124.45.2.el6uek 4.1.12-124.42.3.el6uek 4.1.12-124.41.4.el6uek 4.1.12-124.44.4.el6uek 4.1.12-124.32.1.el6uek 4.1.12-124.39.5.el6uek 4.1.12-124.27.1.el6uek 4.1.12-124.15.2.el6uek 4.1.12-124.18.5.el6uek 4.1.12-112.16.7.el6uek 4.1.12-124.14.5.el6uek 4.1.12-124.19.1.el6uek 4.1.12-94.3.5.el6uek 4.1.12-124.29.3.1.el6uek 4.1.12-124.17.1.el6uek 4.1.12-124.39.1.el6uek 4.1.12-103.9.4.el6uek 4.1.12-124.20.7.el6uek 4.1.12-124.16.2.el6uek 4.1.12-124.27.2.el6uek 4.1.12-124.43.4.el6uek 4.1.12-124.18.9.el6uek 4.1.12-124.15.1.el6uek 4.1.12-124.19.2.el6uek 4.1.12-124.26.10.el6uek 4.1.12-124.28.1.el6uek 4.1.12-124.15.4.el6uek 4.1.12-124.28.6.el6uek 4.1.12-124.28.3.el6uek 4.1.12-112.14.13.el6uek 4.1.12-124.14.2.el6uek 4.1.12-124.16.4.el6uek 4.1.12-124.30.1.el6uek 4.1.12-124.26.12.el6uek 4.1.12-124.20.1.el6uek 4.1.12-112.14.15.el6uek 4.1.12-112.16.4.el6uek 4.1.12-112.17.3.el6uek 4.1.12-124.14.3.el6uek 4.1.12-124.16.1.el6uek 4.1.12-124.16.3.el6uek 4.1.12-124.17.2.el6uek 4.1.12-124.18.1.el6uek 4.1.12-124.20.3.el6uek 4.1.12-124.22.2.el6uek 4.1.12-124.28.5.el6uek 4.1.12-124.31.1.1.el6uek 4.1.12-124.31.1.el6uek 4.1.12-124.39.2.1.el6uek 4.1.12-124.39.2.el6uek 4.1.12-124.39.5.1.el6uek 4.1.12-124.40.6.2.el6uek 4.1.12-124.40.6.3.el6uek 4.1.12-124.41.5.el6uek 4.1.12-124.44.4.1.el6uek 4.1.12-61.47.1.el6uek 4.1.12-124.29.4.1.el6uek 4.1.12-124.42.4.el6uek
Released
Oracle Linux 7 UEK 4
4.1.12-124.27.1.el7uek show all hide all
4.1.12-124.25.1.el7uek 4.1.12-124.44.4.el7uek 4.1.12-124.41.4.el7uek 4.1.12-124.26.12.el7uek 4.1.12-124.15.2.el7uek 4.1.12-103.9.4.el7uek 4.1.12-124.28.3.el7uek 4.1.12-112.14.13.el7uek 4.1.12-124.15.1.el7uek 4.1.12-124.17.1.el7uek 4.1.12-112.16.7.el7uek 4.1.12-124.27.2.el7uek 4.1.12-124.28.6.el7uek 4.1.12-124.29.3.el7uek 4.1.12-124.14.2.el7uek 4.1.12-124.42.3.el7uek 4.1.12-124.39.5.el7uek 4.1.12-124.40.6.el7uek 4.1.12-124.43.4.el7uek 4.1.12-124.32.1.el7uek 4.1.12-124.45.2.el7uek 4.1.12-124.28.1.el7uek 4.1.12-124.15.4.el7uek 4.1.12-94.3.5.el7uek 4.1.12-124.16.2.el7uek 4.1.12-124.39.1.el7uek 4.1.12-124.30.1.el7uek 4.1.12-124.14.5.el7uek 4.1.12-124.32.3.el7uek 4.1.12-124.29.3.1.el7uek 4.1.12-124.14.1.el7uek 4.1.12-124.26.10.el7uek 4.1.12-124.23.2.el7uek 4.1.12-124.20.7.el7uek 4.1.12-124.18.9.el7uek 4.1.12-124.16.4.el7uek 4.1.12-112.14.15.el7uek 4.1.12-112.16.4.el7uek 4.1.12-112.17.3.el7uek 4.1.12-124.14.3.el7uek 4.1.12-124.16.1.el7uek 4.1.12-124.16.3.el7uek 4.1.12-124.17.2.el7uek 4.1.12-124.20.3.el7uek 4.1.12-124.22.2.el7uek 4.1.12-124.28.5.el7uek 4.1.12-124.31.1.1.el7uek 4.1.12-124.31.1.el7uek 4.1.12-124.39.2.1.el7uek 4.1.12-124.39.2.el7uek 4.1.12-124.39.5.1.el7uek 4.1.12-124.42.4.el7uek 4.1.12-124.18.1.el7uek 4.1.12-124.29.4.1.el7uek 4.1.12-124.40.6.3.el7uek 4.1.12-124.41.5.el7uek 4.1.12-124.44.4.1.el7uek
Released
Endurance 6 elrepo
Ready For Release
Ubuntu 16.04 (FIPS)
4.4.0-1002.2
Released