Commit 8643975
committed
media: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_format
jira LE-2349
cve CVE-2024-53104
Rebuild_History Non-Buildable kernel-4.18.0-553.40.1.el8_10
commit-author Benoit Sevens <bsevens@google.com>
commit ecf2b43
This can lead to out of bounds writes since frames of this type were not
taken into account when calculating the size of the frames buffer in
uvc_parse_streaming.
Fixes: c0efd23 ("V4L/DVB (8145a): USB Video Class driver")
Signed-off-by: Benoit Sevens <bsevens@google.com>
Cc: stable@vger.kernel.org
Acked-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
Reviewed-by: Laurent Pinchart <laurent.pinchart@ideasonboard.com>
Signed-off-by: Hans Verkuil <hverkuil@xs4all.nl>
(cherry picked from commit ecf2b43)
Signed-off-by: Jonathan Maple <jmaple@ciq.com>1 parent 0e27ffd commit 8643975
1 file changed
+1
-1
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
368 | 368 | | |
369 | 369 | | |
370 | 370 | | |
371 | | - | |
| 371 | + | |
372 | 372 | | |
373 | 373 | | |
374 | 374 | | |
| |||
0 commit comments