An issue was discovered in the Linux kernel before 5.16.12. drivers/net/usb/sr9700.c allows attackers to obtain sensitive information from heap memory via crafted frame lengths from a device.
Link | Tags |
---|---|
https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.16.10 | mailing list patch vendor advisory |
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=e9da0b56fe27206b49f39805f7dcda8a89379062 | mailing list patch vendor advisory |
https://security.netapp.com/advisory/ntap-20220419-0001/ | third party advisory |
https://lists.debian.org/debian-lts-announce/2022/07/msg00000.html | third party advisory mailing list |