The xc2028_set_config function in drivers/media/tuners/tuner-xc2028.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) via vectors involving omission of the firmware name from a certain data structure.
2016-11-16T05:59:08.030
2025-04-12T10:46:40.837
Deferred
CVSSv3.1: 7.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 3.10.106 | Yes |
Operating System | linux | linux_kernel | < 3.12.70 | Yes |
Operating System | linux | linux_kernel | < 3.18.51 | Yes |
Operating System | linux | linux_kernel | < 4.1.41 | Yes |
Operating System | linux | linux_kernel | < 4.4.65 | Yes |
Operating System | linux | linux_kernel | < 4.6 | Yes |
Operating System | canonical | ubuntu_linux | 12.04 | Yes |
Operating System | canonical | ubuntu_linux | 14.04 | Yes |