CVE-2015-7723 – Privilege Escalation Via Symlink Attacks On POSIX Shared Memory With Insecure Permissions In AMD fglrx-driver

Posted by Portcullis Advisories on Oct 29

Vulnerability title: Privilege Escalation Via Symlink Attacks On POSIX Shared Memory With Insecure Permissions In AMD
fglrx-driver
CVE: CVE-2015-7723
Vendor: AMD
Product: fglrx-driver
Affected version: 14.4.2
Fixed version: 15.7
Reported by: Tim Brown
Details:

It has been identified that the userland portion of the fglrx-driver utilised by Xorg allows privilege escalation via
symlink attacks on POSIX shared memory with insecure permissions….

Leave a Reply