In the Linux kernel, the following vulnerability has been resolved:
ALSA: scarlett2: Add clamp() in scarlett2mixerctl_put()
Ensure the value passed to scarlett2mixerctlput() is between 0 and SCARLETT2MIXERMAXVALUE so we don't attempt to access outside scarlett2mixervalues[].
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/52xxx/CVE-2023-52674.json",
"cna_assigner": "Linux"
}[
{
"id": "CVE-2023-52674-48578245",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"262984715473350338890095435386298056020",
"21938690786662838746041805711241084264",
"133120078029038002083254913041089907407",
"323059565052843981442779321448405848584"
]
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e517645ead5ea22c69d2a44694baa23fe1ce7c2b",
"signature_type": "Line",
"target": {
"file": "sound/usb/mixer_scarlett_gen2.c"
}
},
{
"id": "CVE-2023-52674-906c5299",
"signature_version": "v1",
"digest": {
"function_hash": "200970239807082715127105698996508171736",
"length": 694.0
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ad945ea8d47dd4454c271510bea24850119847c2",
"signature_type": "Function",
"target": {
"file": "sound/usb/mixer_scarlett2.c",
"function": "scarlett2_mixer_ctl_put"
}
},
{
"id": "CVE-2023-52674-96cfbe28",
"signature_version": "v1",
"digest": {
"function_hash": "200970239807082715127105698996508171736",
"length": 694.0
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@04f8f053252b86c7583895c962d66747ecdc61b7",
"signature_type": "Function",
"target": {
"file": "sound/usb/mixer_scarlett2.c",
"function": "scarlett2_mixer_ctl_put"
}
},
{
"id": "CVE-2023-52674-bba8fe13",
"signature_version": "v1",
"digest": {
"function_hash": "200970239807082715127105698996508171736",
"length": 694.0
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e517645ead5ea22c69d2a44694baa23fe1ce7c2b",
"signature_type": "Function",
"target": {
"file": "sound/usb/mixer_scarlett_gen2.c",
"function": "scarlett2_mixer_ctl_put"
}
},
{
"id": "CVE-2023-52674-c1677e57",
"signature_version": "v1",
"digest": {
"function_hash": "200970239807082715127105698996508171736",
"length": 694.0
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d8d8897d65061cbe36bf2909057338303a904810",
"signature_type": "Function",
"target": {
"file": "sound/usb/mixer_scarlett_gen2.c",
"function": "scarlett2_mixer_ctl_put"
}
},
{
"id": "CVE-2023-52674-c45aca93",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"262984715473350338890095435386298056020",
"21938690786662838746041805711241084264",
"133120078029038002083254913041089907407",
"323059565052843981442779321448405848584"
]
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ad945ea8d47dd4454c271510bea24850119847c2",
"signature_type": "Line",
"target": {
"file": "sound/usb/mixer_scarlett2.c"
}
},
{
"id": "CVE-2023-52674-d1659ebc",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"262984715473350338890095435386298056020",
"21938690786662838746041805711241084264",
"133120078029038002083254913041089907407",
"323059565052843981442779321448405848584"
]
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@04f8f053252b86c7583895c962d66747ecdc61b7",
"signature_type": "Line",
"target": {
"file": "sound/usb/mixer_scarlett2.c"
}
},
{
"id": "CVE-2023-52674-ef5d0967",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"262984715473350338890095435386298056020",
"21938690786662838746041805711241084264",
"133120078029038002083254913041089907407",
"323059565052843981442779321448405848584"
]
},
"deprecated": false,
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d8d8897d65061cbe36bf2909057338303a904810",
"signature_type": "Line",
"target": {
"file": "sound/usb/mixer_scarlett_gen2.c"
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-52674.json"