CVE: CVE-2009-3620

Export to Word

The ATI Rage 128 (aka r128) driver in the Linux kernel before 2.6.31-git11 does not properly verify Concurrent Command Engine (CCE) state initialization, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly gain privileges via unspecified ioctl calls.

Threat-Mapped Scoring

Score: 1.5

Priority: P4 - Informational (Low)

EPSS

Score: 0.00098
Percentile: 0.28249

CVSS Scoring

CVSS v3.1 Score: 7.8

Severity: HIGH

Mapped CWE(s)

Affected Products

← Back to Home