Announcement

Collapse
No announcement yet.

High Risk Security Hole Discovered In Qualcomm's GPU Driver

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • High Risk Security Hole Discovered In Qualcomm's GPU Driver

    Phoronix: High Risk Security Hole Discovered In Qualcomm's GPU Driver

    Rob Clark, the developer employed by Red Hat who has near single-handedly been developing Freedreno as a reverse-engineered, open-source GPU driver for Qualcomm's Adreno graphics hardware, made a big discovery. Rob was playing around with the Amazon Fire TV that boasts a Qualcomm SoC and runs on the Qualcomm proprietary graphics driver when discovering a "high risk" security issue...

    Phoronix, Linux Hardware Reviews, Linux hardware benchmarks, Linux server benchmarks, Linux benchmarking, Desktop Linux, Linux performance, Open Source graphics, Linux How To, Ubuntu benchmarks, Ubuntu hardware, Phoronix Test Suite

  • #2
    This is weird.
    With the mali driver, it was all over the news.
    But with the adreno driver... Only on phoronix...

    Comment


    • #3
      Lol, these days if device owner can get root on his device, it called "vulnerability". I would call such terms "rather questionable".

      Comment


      • #4
        Originally posted by 0xBADCODE View Post
        Lol, these days if device owner can get root on his device, it called "vulnerability". I would call such terms "rather questionable".
        Well, if you call any software running on your device owner, I just call that p0wned.
        A device owner should get root on his device, through authentication and authorisation measures that are safe. The device owner should be able to decide what apps are allowed to do.
        This vulnerability allows *any* app to do *anything* on the device owners device without the device owners consent.
        And Samsung KNOX or selinux or whatever is not going to help against this.
        It allows any unpriviliged application to bypass any security measures within the kernel because it is doing it through external means (the GPU).

        Comment

        Working...
        X