Description
In the Linux kernel, the following vulnerability has been resolved: media: atomisp: prevent integer overflow in sh_css_set_black_frame() The "height" and "width" values come from the user so the "height * width" multiplication can overflow.
Product status
a49d25364dfb9f8a64037488a39ab1f56c5fa419 (git) before 51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654
ad85094b293e40e7a2f831b0311a389d952ebd5e (git) before a560aeac2f2d284903b5900774765d7fc61547bc
ad85094b293e40e7a2f831b0311a389d952ebd5e (git) before a549517e4b761f3940011db30320cb8c9badde54
ad85094b293e40e7a2f831b0311a389d952ebd5e (git) before 3ad290194bb06979367622e47357462836c1d3b4
4.12
5.8
Any version before 4.12
4.18 (semver) before 5.8
5.15.77 (semver)
6.0.7 (semver)
6.1 (original_commit_for_fix)
References
git.kernel.org/...c/51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654
git.kernel.org/...c/a560aeac2f2d284903b5900774765d7fc61547bc
git.kernel.org/...c/a549517e4b761f3940011db30320cb8c9badde54
git.kernel.org/...c/3ad290194bb06979367622e47357462836c1d3b4