Overview
- pnggroup
- libpng
Description
Statistics
- 1 Post
Overview
- Qualcomm, Inc.
- Snapdragon
Description
Statistics
- 1 Post
Fediverse
I’m not smart enough to see how CVE-2025-47398 from the Qualcomm February security bulletin works.
The patch clears a dangling entry->priv_data in kgsl_destroy_ion.
On 5.10, kgsl_destroy_ion is only called through kgsl_sharedmem_free: mainly when a kgsl_mem_entry’s reference count reaches zero:
kgsl_mem_entry_destroy -> kgsl_sharedmem_free -> memdesc->ops->free,
The other calls to kgsl_sharedmem_free are on the error handling path - on those error paths, the entry is freshly created, and after the kgsl_sharedmem_free, the entry is then immediately freed too, without any way to get the entry in between.
There’s only a few places that use entry->priv_data:
kgsl_get_allocator,kgsl_get_egl_countsandkgsl_get_dmabuf_inode_numberseem to be used by debugfs onlykgsl_destroy_ionitself
I can’t find anything obvious that would let me call kgsl_sharedmem_free twice.
Overview
Description
Statistics
- 1 Post
- 2 Interactions
Fediverse
To compare #sydbox and #gvisor, take 2 CVEs: CVE-2018-19333, gvisor proc2proc arbitrary-memory-write which wasn't classified as sandbox break. Vuln is there because gvisor uses the seccomp-trap API to run all in a single process ignoring ASLR.. CVE-2024-42318 aka Houdini is a #landlock break where a keyrings(7) call would unlock the sandbox. Syd wasn't affected: 1. keyrings is def disabled 2. open call happens in a syd emulator thread confined by same landlock sandbox. #exherbo #linux #security
Overview
Description
Statistics
- 1 Post
- 2 Interactions
Fediverse
To compare #sydbox and #gvisor, take 2 CVEs: CVE-2018-19333, gvisor proc2proc arbitrary-memory-write which wasn't classified as sandbox break. Vuln is there because gvisor uses the seccomp-trap API to run all in a single process ignoring ASLR.. CVE-2024-42318 aka Houdini is a #landlock break where a keyrings(7) call would unlock the sandbox. Syd wasn't affected: 1. keyrings is def disabled 2. open call happens in a syd emulator thread confined by same landlock sandbox. #exherbo #linux #security
Overview
- Ivanti
- Endpoint Manager Mobile
Description
Statistics
- 1 Post
- 1 Interaction
Fediverse
This Ivanti Endpoint Manager Mobile (IPMM) security advisory seems to fit the timeline of the incident: https://forums.ivanti.com/s/article/Security-Advisory-Ivanti-Endpoint-Manager-Mobile-EPMM-CVE-2026-1281-CVE-2026-1340?language=en_US
Overview
Description
Statistics
- 1 Post
Overview
Description
Statistics
- 2 Posts
Description
Statistics
- 2 Posts
Overview
Description
Statistics
- 2 Posts