A flaw was found in the Framebuffer Console (fbcon) in the Linux Kernel. When providing font->width and font->height greater than 32 to fbcon_set_font, since there are no checks in place, a shift-out-of-bounds occurs leading to undefined behavior and possible denial of service.
2023-06-12T20:15:12.910
2025-03-11T15:15:39.120
Modified
CVSSv3.1: 5.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 6.2 | Yes |
Operating System | linux | linux_kernel | 6.2 | Yes |
Operating System | linux | linux_kernel | 6.2 | Yes |
Operating System | linux | linux_kernel | 6.2 | Yes |
Operating System | linux | linux_kernel | 6.2 | Yes |
Operating System | linux | linux_kernel | 6.2 | Yes |
Operating System | linux | linux_kernel | 6.2 | Yes |
Operating System | fedoraproject | fedora | 38 | Yes |
Operating System | redhat | enterprise_linux | 8.0 | Yes |
Operating System | redhat | enterprise_linux | 9.0 | Yes |