CVE-2013-1928

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
4.7
MEDIUM
Affected
1
PROJECT

Description

The do_video_set_spu_palette function in fs/compat_ioctl.c in the Linux kernel before 3.6.5 on unspecified architectures lacks a certain error check, which might allow local users to obtain sensitive information from kernel stack memory via a crafted VIDEO_SET_SPU_PALETTE ioctl call on a /dev/dvb device.

Linux kernel source tree
GitHubGitHub
237K