Vulnerability in fbdev exploited when connecting a malicious output device
A vulnerability has been identified in the fbdev subsystem (Framebuffer) that could lead to a 64-byte kernel stack overflow when processing improperly formatted EDID parameters. Exploitation can occur by connecting a malicious monitor, projector, or other output device (for instance, a specially prepared device simulating a monitor) to the computer. Interestingly, Linus Torvalds was the first to respond to the vulnerability notification, suggesting […]
