Skip to content

Conversation

gvrose8192
Copy link

fips-8-legacy.log
jira VULN-9673
cve CVE-2024-53104
commit-author Benoit Sevens [email protected]
commit ecf2b43

This can lead to out of bounds writes since frames of this type were not taken into account when calculating the size of the frames buffer in uvc_parse_streaming.

Fixes: c0efd23 ("V4L/DVB (8145a): USB Video Class driver")
Signed-off-by: Benoit Sevens [email protected]
Cc: [email protected]
Acked-by: Greg Kroah-Hartman [email protected]
Reviewed-by: Laurent Pinchart [email protected]
Signed-off-by: Hans Verkuil [email protected]
(cherry picked from commit ecf2b43)
Signed-off-by: Greg Rose [email protected]

fips-8-legacy.log
fips-8-legacy-build.log

Nothing unusual in the build or selftest logs and this CVE is not worth extra testing. It applies, builds, installs and all is good.

…parse_format

jira VULN-9673
cve CVE-2024-53104
commit-author Benoit Sevens <[email protected]>
commit ecf2b43

This can lead to out of bounds writes since frames of this type were not
taken into account when calculating the size of the frames buffer in
uvc_parse_streaming.

Fixes: c0efd23 ("V4L/DVB (8145a): USB Video Class driver")
	Signed-off-by: Benoit Sevens <[email protected]>
	Cc: [email protected]
	Acked-by: Greg Kroah-Hartman <[email protected]>
	Reviewed-by: Laurent Pinchart <[email protected]>
	Signed-off-by: Hans Verkuil <[email protected]>
(cherry picked from commit ecf2b43)
	Signed-off-by: Greg Rose <[email protected]>
Copy link

@jallisonciq jallisonciq left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

OK, checked that we can't get here if ftype is unset (which is the only real concern). LGTM. RB+.

@bmastbergen
Copy link
Collaborator

Does VULN-9673 target fips-legacy-8-compliant/4.18.0-425.13.1 ? I thought that is what VULN-9671 is for. Are these duplicates?

@gvrose8192
Copy link
Author

Does VULN-9673 target fips-legacy-8-compliant/4.18.0-425.13.1 ? I thought that is what VULN-9671 is for. Are these duplicates?

Whoops - I picked out the wrong ticket - Yes, should be VULN-9671! Good catch, I'll fix and repush. Thanks!

@gvrose8192
Copy link
Author

Duplicated by accident - no need for this one.

@gvrose8192 gvrose8192 closed this Feb 12, 2025
@gvrose8192 gvrose8192 deleted the gvrose_fips-legacy-8-compliant/4.18.0-425.13.1 branch February 12, 2025 19:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

3 participants