In the Linux kernel, the following vulnerability has been resolved:
media: uvcvideo: Fix OOB read
If the index provided by the user is bigger than the mask size, we might do an out of bound read.
[
{
"signature_type": "Function",
"digest": {
"function_hash": "152264963959178286365884760100868215231",
"length": 1087.0
},
"deprecated": false,
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@09635bf4cdd4adf2160198a6041bcc7ca46c0558",
"target": {
"function": "uvc_query_v4l2_menu",
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"id": "CVE-2023-52565-072cbfbc"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "159578161886121990019940082859980549746",
"length": 1087.0
},
"deprecated": false,
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8bcf70d787f7d53a3b85ad394f926cfef3eed023",
"target": {
"function": "uvc_query_v4l2_menu",
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"id": "CVE-2023-52565-0f7ee33d"
},
{
"signature_type": "Line",
"digest": {
"line_hashes": [
"235838589804463071603628653695868823896",
"240417769286129658949617935254063979211",
"90119327808469290642701261138704722324"
],
"threshold": 0.9
},
"deprecated": false,
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@41ebaa5e0eebea4c3bac96b72f9f8ae0d77c0bdb",
"target": {
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"id": "CVE-2023-52565-8b5a1d91"
},
{
"signature_type": "Line",
"digest": {
"line_hashes": [
"235838589804463071603628653695868823896",
"240417769286129658949617935254063979211",
"90119327808469290642701261138704722324"
],
"threshold": 0.9
},
"deprecated": false,
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8bcf70d787f7d53a3b85ad394f926cfef3eed023",
"target": {
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"id": "CVE-2023-52565-92d1eafa"
},
{
"signature_type": "Line",
"digest": {
"line_hashes": [
"235838589804463071603628653695868823896",
"240417769286129658949617935254063979211",
"90119327808469290642701261138704722324"
],
"threshold": 0.9
},
"deprecated": false,
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@09635bf4cdd4adf2160198a6041bcc7ca46c0558",
"target": {
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"id": "CVE-2023-52565-96de9d2d"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "159578161886121990019940082859980549746",
"length": 1087.0
},
"deprecated": false,
"signature_version": "v1",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@41ebaa5e0eebea4c3bac96b72f9f8ae0d77c0bdb",
"target": {
"function": "uvc_query_v4l2_menu",
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"id": "CVE-2023-52565-991cbfda"
}
]