7.8

CVE-2013-7445

The Direct Rendering Manager (DRM) subsystem in the Linux kernel through 4.x mishandles requests for Graphics Execution Manager (GEM) objects, which allows context-dependent attackers to cause a denial of service (memory consumption) via an application that processes graphics data, as demonstrated by JavaScript code that creates many CANVAS elements for rendering by Chrome or Firefox.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
LinuxLinux Kernel Version <= 4.0.0
LinuxLinux Kernel Version4.0.1
LinuxLinux Kernel Version4.0.2
LinuxLinux Kernel Version4.0.3
LinuxLinux Kernel Version4.0.4
LinuxLinux Kernel Version4.0.5
LinuxLinux Kernel Version4.0.6
LinuxLinux Kernel Version4.0.7
LinuxLinux Kernel Version4.0.8
LinuxLinux Kernel Version4.0.9
LinuxLinux Kernel Version4.1.1
LinuxLinux Kernel Version4.1.2
LinuxLinux Kernel Version4.1.3
LinuxLinux Kernel Version4.1.4
LinuxLinux Kernel Version4.1.5
LinuxLinux Kernel Version4.1.6
LinuxLinux Kernel Version4.1.7
LinuxLinux Kernel Version4.1.8
LinuxLinux Kernel Version4.1.9
LinuxLinux Kernel Version4.1.10
LinuxLinux Kernel Version4.2.1
LinuxLinux Kernel Version4.2.2
LinuxLinux Kernel Version4.2.3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.23% 0.785
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C