[Full-disclosure] nvidia linux binary driver priv escalation exploit

2012-08-05 Thread Daniel Dadap
Dave, Thank you for reporting this vulnerability. NVIDIA has released an updated driver, version 304.32, which contains a hotfix to block access to the registers involved in this attack, as well as some other registers which we have identified as being susceptible to a similar type of attack. In a

Re: [Full-disclosure] nvidia linux binary driver priv escalation exploit

2012-08-02 Thread Dave Airlie
> > what is your system? it doesn't work for my opensuse 12.1 (kernel > 3.1.10-1.9-desktop, arch x86_64) with nvidia driver version 295.20. > maybe this will give you some more info (i'm not goot at C at all), here is > the output (i've commented 'if (getuid()) {' stuff and dump_gate function): Ye

[Full-disclosure] nvidia linux binary driver priv escalation exploit

2012-08-01 Thread Dave Airlie
First up I didn't write this but I have executed it and it did work here, I was given this anonymously, it has been sent to nvidia over a month ago with no reply or advisory and the original author wishes to remain anonymous but would like to have the exploit published at this time, so I said I'd