CVE-2023-52565

HIGH

Linux Kernel - Out-of-bounds Read in UVC Video Driver

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Fix OOB read If the index provided by the user is bigger than the mask size, we might do an out of bound read.

Scores

CVSS v3 7.1
EPSS 0.0023
EPSS Percentile 14.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-125
Status published
Products (13)
Linux/Linux < 6.3
Linux/Linux 367703c3ec4f72208b8cae14310b8a2c955ec565 - 09635bf4cdd4adf2160198a6041bcc7ca46c0558
Linux/Linux 40140eda661ea4be219ef194a4f43b7b5e3bbd27 - 41ebaa5e0eebea4c3bac96b72f9f8ae0d77c0bdb
Linux/Linux 40140eda661ea4be219ef194a4f43b7b5e3bbd27 - 8bcf70d787f7d53a3b85ad394f926cfef3eed023
Linux/Linux 42cbbc6b2c39b02e07cbd24dc2155d4edb99dd04
Linux/Linux 6.1.16 - 6.1.56
Linux/Linux 6.1.56 - 6.1.*
Linux/Linux 6.2.3 - 6.3
Linux/Linux 6.3
Linux/Linux 6.5.6 - 6.5.*
... and 3 more
Published Mar 02, 2024
Tracked Since Feb 18, 2026