← Zurück zur CVE-Suche

CVE-2026-31781

drm

Beschreibung

In the Linux kernel, the following vulnerability has been resolved: drm/ioc32: stop speculation on the drm_compat_ioctl path The drm compat ioctl path takes a user controlled pointer, and then dereferences it into a table of function pointers, the signature method of spectre problems. Fix this up by calling array_index_nospec() on the index to the function pointer list.

CVSS 5.5EPSS 0.123%Risiko 0.56
Quelle öffnen
Veröffentlicht
2026-05-01 15:16:41
Betroffene Versionen
unknown
Typ
Core software
Vektor
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Betriebssysteme
Linux