Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-53104

Опубликовано: 02 дек. 2024
Источник: debian
EPSS Низкий

Описание

In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format This can lead to out of bounds writes since frames of this type were not taken into account when calculating the size of the frames buffer in uvc_parse_streaming.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed6.11.9-1package
linuxfixed6.1.119-1bookwormpackage

Примечания

  • https://git.kernel.org/linus/ecf2b43018da9579842c774b7f35dbe11b5c38dd (6.13-rc1)

EPSS

Процентиль: 85%
0.02472
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
7 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format This can lead to out of bounds writes since frames of this type were not taken into account when calculating the size of the frames buffer in uvc_parse_streaming.

CVSS3: 7.3
redhat
7 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format This can lead to out of bounds writes since frames of this type were not taken into account when calculating the size of the frames buffer in uvc_parse_streaming.

CVSS3: 7.8
nvd
7 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format This can lead to out of bounds writes since frames of this type were not taken into account when calculating the size of the frames buffer in uvc_parse_streaming.

suse-cvrf
4 месяца назад

Security update for the Linux Kernel (Live Patch 34 for SLE 15 SP4)

suse-cvrf
4 месяца назад

Security update for the Linux Kernel (Live Patch 48 for SLE 15 SP3)

EPSS

Процентиль: 85%
0.02472
Низкий