Nixpkgs security tracker

Try the new UI
Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestion detail

Dismissed
(max. allowed matches exceeded)
created 1 week, 4 days ago Activity log
  • Created & dismissed (max. allowed matches exceeded) suggestion
media: s2255: check firmware size before reading trailing marker

In the Linux kernel, the following vulnerability has been resolved: media: s2255: check firmware size before reading trailing marker s2255_probe() reads a 4-byte marker and version from the last 8 bytes of the firmware blob (fw->data[fw_size - 8] and [fw_size - 4]). If the firmware file is shorter than 8 bytes, fw_size - 8 underflows and the access reads out of bounds. Validate the firmware size before indexing.

Affected products

Linux
  • <6f6a5b0b0a84c2de0e152f2841e57bc226db924f
  • =<7.2.*
  • =<6.1.*
  • <5626785b0e4665326e4d96736c106161da09b2f0
  • =<6.6.*
  • <330f2936ab768c7215322a476f033143e8891d28
  • =<6.12.*
  • =<5.15.*
  • <7d221859ba45d7228d0138c9a3e55bd3bb31e14e
  • =<6.18.*
  • =<*
  • <3e03f1209c1c8a45a7bc559f4ecd79d9b33f706d
  • <2.6.28
  • <ffc27411ea60b8a09f1fea3d664b65210fdeb454
  • <342632a4d8ba3fafc1556deee0b7a48dd7860336
  • =<5.10.*
  • ==2.6.28
  • <8eca0f85eeb0789be40e637bcf9a21c4265b6c6f