CVE-2011-1016
Last modified
CVE-2011-1016 is a vulnerability of currently unknown severity. The Radeon GPU drivers in the Linux kernel before 2.6.38-rc5 do not properly validate data related to the AA resolve registers, which allows local users to write to arbitrary memory locations associated with (1) Video RAM (aka VRAM) or (2) the Graphics Translation Table (GTT) via crafted values.. EPSS estimates a 0.34% chance of exploitation in the next 30 days.
Description
The Radeon GPU drivers in the Linux kernel before 2.6.38-rc5 do not properly validate data related to the AA resolve registers, which allows local users to write to arbitrary memory locations associated with (1) Video RAM (aka VRAM) or (2) the Graphics Translation Table (GTT) via crafted values.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | < 2.6.38 |
| Linux | Linux Kernel | 2.6.38 |
References
- http://openwall.com/lists/oss-security/2011/02/24/11Mailing List, Patch, Third Party Advisory
- http://openwall.com/lists/oss-security/2011/02/24/3Mailing List, Patch, Third Party Advisory
- http://openwall.com/lists/oss-security/2011/02/25/4Mailing List, Patch, Third Party Advisory
- http://www.securityfocus.com/bid/46557Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=680000Issue Tracking, Patch, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65691Third Party Advisory, VDB Entry
- http://openwall.com/lists/oss-security/2011/02/24/11Mailing List, Patch, Third Party Advisory
- http://openwall.com/lists/oss-security/2011/02/24/3Mailing List, Patch, Third Party Advisory
- http://openwall.com/lists/oss-security/2011/02/25/4Mailing List, Patch, Third Party Advisory
- http://www.securityfocus.com/bid/46557Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=680000Issue Tracking, Patch, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65691Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2011-1016?
How severe is CVE-2011-1016?
How do I fix CVE-2011-1016?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2011
- CVE-2011-1010Buffer overflow in the mac_partition function in fs/partitio…
- CVE-2011-1011The seunshare_mount function in sandbox/seunshare.c in seuns…
- CVE-2011-1012The ldm_parse_vmdb function in fs/partitions/ldm.c in the Li…
- CVE-2011-1013Integer signedness error in the drm_modeset_ctl function in …
- CVE-2011-1014Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2011-1015The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer m…
- CVE-2011-1017Heap-based buffer overflow in the ldm_frag_add function in f…
- CVE-2011-1018logwatch.pl in Logwatch 7.3.6 allows remote attackers to exe…
- CVE-2011-1019The dev_load function in net/core/dev.c in the Linux kernel …
- CVE-2011-1020The proc filesystem implementation in the Linux kernel 2.6.3…
- CVE-2011-1021drivers/acpi/debugfs.c in the Linux kernel before 3.0 allows…
- CVE-2011-1022The cgre_receive_netlink_msg function in daemon/cgrulesengd.…
Are you affected by CVE-2011-1016?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
