Description
In the Linux kernel, the following vulnerability has been resolved: media: usbtv: Lock resolution while streaming When an program is streaming (ffplay) and another program (qv4l2) changes the TV standard from NTSC to PAL, the kernel crashes due to trying to copy to unmapped memory. Changing from NTSC to PAL increases the resolution in the usbtv struct, but the video plane buffer isn't adjusted, so it overflows. [hverkuil: call vb2_is_busy instead of vb2_is_streaming]
Product status
0e0fe3958fdd13dbf55c3a787acafde6efd04272 (git) before c35e7c7a004ef379a1ae7c7486d4829419acad1d
0e0fe3958fdd13dbf55c3a787acafde6efd04272 (git) before ee7bade8b9244834229b12b6e1e724939bedd484
0e0fe3958fdd13dbf55c3a787acafde6efd04272 (git) before 5427dda195d6baf23028196fd55a0c90f66ffa61
0e0fe3958fdd13dbf55c3a787acafde6efd04272 (git) before ef9b3c22405192afaa279077ddd45a51db90b83d
0e0fe3958fdd13dbf55c3a787acafde6efd04272 (git) before 3d83d0b5ae5045a7a246ed116b5f6c688a12f9e9
0e0fe3958fdd13dbf55c3a787acafde6efd04272 (git) before c3d75524e10021aa5c223d94da4996640aed46c0
0e0fe3958fdd13dbf55c3a787acafde6efd04272 (git) before 9f886d21e235c4bd038cb20f6696084304197ab3
0e0fe3958fdd13dbf55c3a787acafde6efd04272 (git) before 7e40e0bb778907b2441bff68d73c3eb6b6cd319f
3.14
Any version before 3.14
5.4.297 (semver)
5.10.241 (semver)
5.15.190 (semver)
6.1.149 (semver)
6.6.103 (semver)
6.12.44 (semver)
6.16.4 (semver)
6.17 (original_commit_for_fix)
References
git.kernel.org/...c/c35e7c7a004ef379a1ae7c7486d4829419acad1d
git.kernel.org/...c/ee7bade8b9244834229b12b6e1e724939bedd484
git.kernel.org/...c/5427dda195d6baf23028196fd55a0c90f66ffa61
git.kernel.org/...c/ef9b3c22405192afaa279077ddd45a51db90b83d
git.kernel.org/...c/3d83d0b5ae5045a7a246ed116b5f6c688a12f9e9
git.kernel.org/...c/c3d75524e10021aa5c223d94da4996640aed46c0
git.kernel.org/...c/9f886d21e235c4bd038cb20f6696084304197ab3
git.kernel.org/...c/7e40e0bb778907b2441bff68d73c3eb6b6cd319f