Race condition in the ALSA subsystem in the Linux kernel before 4.13.8 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted /dev/snd/seq ioctl calls, related to sound/core/seq/seqclientmgr.c and sound/core/seq/seqports.c.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-15265.json"
[
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@71105998845fb012937332fe2e806d443c09e026",
"digest": {
"function_hash": "143424250361938344603839416816423593415",
"length": 1119.0
},
"id": "CVE-2017-15265-451930b8",
"deprecated": false,
"target": {
"file": "sound/core/seq/seq_ports.c",
"function": "snd_seq_create_port"
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@71105998845fb012937332fe2e806d443c09e026",
"digest": {
"line_hashes": [
"165086941706504735698197272969244713886",
"320168133777070589450625027422115309581",
"335383441342411006609171814731851022022",
"193751593277685770271741998545766779629",
"20633331143205396829176887594707859142",
"296938635286163201879486101602352862648",
"216615836927063090398086893449647770922",
"45739933071372573509007449087147988407",
"25333872951290205684703602003299350548",
"50259349440507498269426529215039861016",
"22252278715927437747965528030772176125",
"45584242520027467489090504259901950098",
"315588406148978460478274109896789993905",
"103875425005779659996305798672162992273"
],
"threshold": 0.9
},
"id": "CVE-2017-15265-5cce8200",
"deprecated": false,
"target": {
"file": "sound/core/seq/seq_ports.c"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@71105998845fb012937332fe2e806d443c09e026",
"digest": {
"function_hash": "336741848772983196184540952051925063409",
"length": 973.0
},
"id": "CVE-2017-15265-8fccbc7c",
"deprecated": false,
"target": {
"file": "sound/core/seq/seq_clientmgr.c",
"function": "snd_seq_ioctl_create_port"
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@71105998845fb012937332fe2e806d443c09e026",
"digest": {
"line_hashes": [
"138921417649421359016945244965111434613",
"57716726454560962110835176005787936373",
"235608021122915574206556437742851335514",
"219248273249595210761784495881217559784",
"3898997209288934150205641885385851693",
"230010503883053208943024083353167009491",
"107247460762140376178612367924868514232",
"40102649486544738506358857160971007646",
"53650346853891959744940815516692737819",
"203325076292733860048171134393836764708",
"98268570338616630712321123115966087390",
"318911871239331269693106187409729967485"
],
"threshold": 0.9
},
"id": "CVE-2017-15265-d3bb197b",
"deprecated": false,
"target": {
"file": "sound/core/seq/seq_clientmgr.c"
}
}
]