NVIDIA driver flaw allows remote compromise
October 17th, 2006 by noam, Filed under: Commentary
A vulnerability in NVIDIA’s X driver allows machines that view a malformed web page to execute arbitrary code at root privileges. The vulnerability can be also executed locally but the more interesting part is that it can be easily exploited remotely.
In addition, it appears that the open source drivers are immune to this, while the binary formed drivers are not, making this vulnerability a good example why open source drivers are more secure
You can find out more information about this vulnerability, in addition to a proof of concept at: NVIDIA Binary Graphics Driver for Linux Buffer Overflow
-
rebeljoe
-
ATI sux



