CVE-2024-35830
media: tc358743: register v4l2 async device only after successful setup
In the Linux kernel, the following vulnerability has been resolved:
media: tc358743: register v4l2 async device only after successful setup
Ensure the device has been setup correctly before registering the v4l2
async device, thus allowing userspace to access.
Produtos afetados
Linux · LinuxQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://git.kernel.org/stable/c/17c2650de14842c25c569cbb2126c421489a3a24https://git.kernel.org/stable/c/4f1490a5d7a0472ee5d9f36547bc4ba46be755c7https://git.kernel.org/stable/c/610f20e5cf35ca9c0992693cae0dd8643ce932e7https://git.kernel.org/stable/c/87399f1ff92203d65f1febf5919429f4bb613a02https://git.kernel.org/stable/c/8ba8db9786b55047df5ad3db3e01dd886687a77dhttps://git.kernel.org/stable/c/b8505a1aee8f1edc9d16d72ae09c93de086e2a1ahttps://git.kernel.org/stable/c/c915c46a25c3efb084c4f5e69a053d7f7a635496https://git.kernel.org/stable/c/daf21394f9898fb9f0698c3e50de08132d2164e6https://git.kernel.org/stable/c/edbb3226c985469a2f8eb69885055c9f5550f468https://lists.debian.org/debian-lts-announce/2024/06/msg00017.htmlhttps://lists.debian.org/debian-lts-announce/2024/06/msg00020.html