« List of all CVEs

CVE-2023-33951

Kernel: vmwgfx: race condition leading to information disclosure vulnerability

Published: 7/24/2023 Last updated: 11/7/2025 Reserved: 5/24/2023

A race condition vulnerability was found in the vmwgfx driver in the Linux kernel. The flaw exists within the handling of GEM objects. The issue results from improper locking when performing operations on an object. This flaw allows a local privileged user to disclose information in the context of the kernel.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Metrics

Version Score Severity Vector String
3.1 6.7 Medium CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L

Opam packages affected (27)

albatross cdrom conf-bpftool conf-libbpf conf-linux-libc-dev core core_unix hvsock mirage-block-unix mm ocaml-probes orun rawlink rawlink-eio rawlink-lwt shell solo5 solo5-bindings-hvt solo5-bindings-spt solo5-cross-aarch64 solo5-kernel-ukvm tracy-client tuntap uring vhd-format vhd-format-lwt xapi-stdext-unix

Products affected (20)

Product Vendor Version
Red Hat Enterprise Linux 9 Red Hat 4.0
Red Hat Enterprise Linux 9 Red Hat 13.2.0.0
Red Hat Enterprise Linux 9.2 Extended Update Support Red Hat Live Meeting 2007 Add-in and Console
Red Hat Enterprise Linux 8.8 Extended Update Support Red Hat Cisco Meeting Server
Red Hat Enterprise Linux 6 Red Hat 11.4.0
Red Hat Enterprise Linux 7 Red Hat n/a
Red Hat Enterprise Linux 6 Red Hat <= 11.1.50_20230614
Red Hat Enterprise Linux 7 Red Hat n/a
Red Hat Enterprise Linux 9 Red Hat VMware vCenter Server (6.7 before 6.7 U3p and 6.5 before 6.5 U3r) and VMware Cloud Foundation 3.x
Red Hat Enterprise Linux 9 Red Hat <= 11.1.50_20230614
Red Hat Enterprise Linux 9.2 Extended Update Support Red Hat n/a
Red Hat Enterprise Linux 8 Red Hat < 110.0.5481.177
Red Hat Enterprise Linux 8.8 Extended Update Support Red Hat Windows 8.1
Red Hat Enterprise Linux 9 Red Hat 7.0(3)I4(8b)
Red Hat Enterprise Linux 9.2 Extended Update Support Red Hat n/a
Red Hat Enterprise Linux 7 Red Hat n/a
Red Hat Enterprise Linux 9 Red Hat 20250208
Red Hat Enterprise Linux 8 Red Hat <= 1.49.0
Red Hat Enterprise Linux 9.2 Extended Update Support Red Hat 6.0(2)A8(10a)
Red Hat Enterprise Linux 8 Red Hat <= 3.11.1

References (36)