Vulnerability Description
The adreno_perfcounter_query_group function in drivers/gpu/msm/adreno_perfcounter.c in the Adreno GPU driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, uses an incorrect integer data type, which allows attackers to cause a denial of service (integer overflow, heap-based buffer overflow, and incorrect memory allocation) or possibly have unspecified other impact via a crafted IOCTL_KGSL_PERFCOUNTER_QUERY ioctl call.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 3.0, <= 3.19.8 |
| Nexus 5X Firmware | - | |
| Nexus 5X | - | |
| Nexus 6P Firmware | - | |
| Nexus 6P | - |
Related Weaknesses (CWE)
References
- http://source.android.com/security/bulletin/2016-06-01.htmlPatchVendor Advisory
- http://www.securitytracker.com/id/1035766Third Party AdvisoryVDB Entry
- https://codeaurora.org/cgit/quic/la/kernel/msm-3.18/commit/?id=27c95b64b2e4b5ff1Mailing ListPatchThird Party Advisory
- https://www.codeaurora.org/buffer-overflow-adreno-gpu-msm-driver-cve-2016-2062Broken Link
- http://source.android.com/security/bulletin/2016-06-01.htmlPatchVendor Advisory
- http://www.securitytracker.com/id/1035766Third Party AdvisoryVDB Entry
- https://codeaurora.org/cgit/quic/la/kernel/msm-3.18/commit/?id=27c95b64b2e4b5ff1Mailing ListPatchThird Party Advisory
- https://www.codeaurora.org/buffer-overflow-adreno-gpu-msm-driver-cve-2016-2062Broken Link
FAQ
What is CVE-2016-2062?
CVE-2016-2062 is a vulnerability with a CVSS score of 7.8 (HIGH). The adreno_perfcounter_query_group function in drivers/gpu/msm/adreno_perfcounter.c in the Adreno GPU driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contribution...
How severe is CVE-2016-2062?
CVE-2016-2062 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-2062?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel, Google Nexus 5X Firmware, Google Nexus 5X, Google Nexus 6P Firmware, Google Nexus 6P.