Race Condition Vulnerability in Linux Kernel's vmwgfx Driver Allows Privileged User to Disclose Kernel Information

Race Condition Vulnerability in Linux Kernel's vmwgfx Driver Allows Privileged User to Disclose Kernel Information

CVE-2023-33951 · MEDIUM Severity

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N

A race condition vulnerability was found in the vmwgfx driver in the Linux kernel. The flaw exists within the handling of GEM objects. The issue results from improper locking when performing operations on an object. This flaw allows a local privileged user to disclose information in the context of the kernel.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.