In the Linux kernel, the following vulnerability has been resolved:
media: uvcvideo: Fix OOB read
If the index provided by the user is bigger than the mask size, we might do an out of bound read.
{
"cna_assigner": "Linux",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/52xxx/CVE-2023-52565.json"
}[
{
"digest": {
"length": 1087.0,
"function_hash": "152264963959178286365884760100868215231"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@09635bf4cdd4adf2160198a6041bcc7ca46c0558",
"deprecated": false,
"id": "CVE-2023-52565-072cbfbc",
"signature_type": "Function",
"target": {
"function": "uvc_query_v4l2_menu",
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"signature_version": "v1"
},
{
"digest": {
"length": 1087.0,
"function_hash": "159578161886121990019940082859980549746"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8bcf70d787f7d53a3b85ad394f926cfef3eed023",
"deprecated": false,
"id": "CVE-2023-52565-0f7ee33d",
"signature_type": "Function",
"target": {
"function": "uvc_query_v4l2_menu",
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"signature_version": "v1"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"235838589804463071603628653695868823896",
"240417769286129658949617935254063979211",
"90119327808469290642701261138704722324"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@41ebaa5e0eebea4c3bac96b72f9f8ae0d77c0bdb",
"deprecated": false,
"id": "CVE-2023-52565-8b5a1d91",
"signature_type": "Line",
"target": {
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"signature_version": "v1"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"235838589804463071603628653695868823896",
"240417769286129658949617935254063979211",
"90119327808469290642701261138704722324"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8bcf70d787f7d53a3b85ad394f926cfef3eed023",
"deprecated": false,
"id": "CVE-2023-52565-92d1eafa",
"signature_type": "Line",
"target": {
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"signature_version": "v1"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"235838589804463071603628653695868823896",
"240417769286129658949617935254063979211",
"90119327808469290642701261138704722324"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@09635bf4cdd4adf2160198a6041bcc7ca46c0558",
"deprecated": false,
"id": "CVE-2023-52565-96de9d2d",
"signature_type": "Line",
"target": {
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"signature_version": "v1"
},
{
"digest": {
"length": 1087.0,
"function_hash": "159578161886121990019940082859980549746"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@41ebaa5e0eebea4c3bac96b72f9f8ae0d77c0bdb",
"deprecated": false,
"id": "CVE-2023-52565-991cbfda",
"signature_type": "Function",
"target": {
"function": "uvc_query_v4l2_menu",
"file": "drivers/media/usb/uvc/uvc_ctrl.c"
},
"signature_version": "v1"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-52565.json"