CVE-2012-6703

Integer overflow in the snd_compr_allocate_buffer function in sound/core/compress_offload.c in the ALSA subsystem in the Linux kernel before 3.6-rc6-next-20120917 allows local users to cause a denial of service (insufficient memory allocation) or possibly have unspecified other impact via a crafted SNDRV_COMPRESS_SET_PARAMS ioctl call.
Configurations

Configuration 1 (hide)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

07 Nov 2023, 02:13

Type Values Removed Values Added
References (CONFIRM) https://github.com/torvalds/linux/commit/b35cc8225845112a616e3a2266d2fde5ab13d3ab - Vendor Advisory () https://github.com/torvalds/linux/commit/b35cc8225845112a616e3a2266d2fde5ab13d3ab -
References (BID) http://www.securityfocus.com/bid/91502 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/91502 -
References (CONFIRM) https://www.kernel.org/pub/linux/kernel/next/patch-v3.6-rc6-next-20120917.xz - Patch () https://www.kernel.org/pub/linux/kernel/next/patch-v3.6-rc6-next-20120917.xz -
References (CONFIRM) http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=b35cc8225845112a616e3a2266d2fde5ab13d3ab - Vendor Advisory () http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=b35cc8225845112a616e3a2266d2fde5ab13d3ab -
References (SECTRACK) http://www.securitytracker.com/id/1036190 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1036190 -
References (MLIST) http://www.openwall.com/lists/oss-security/2016/06/28/6 - Mailing List () http://www.openwall.com/lists/oss-security/2016/06/28/6 -
References (CONFIRM) https://bugzilla.redhat.com/show_bug.cgi?id=1351076 - Issue Tracking () https://bugzilla.redhat.com/show_bug.cgi?id=1351076 -

17 Jan 2023, 21:45

Type Values Removed Values Added
CPE cpe:2.3:o:linux:linux_kernel:*:rc5:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
References (CONFIRM) https://bugzilla.redhat.com/show_bug.cgi?id=1351076 - (CONFIRM) https://bugzilla.redhat.com/show_bug.cgi?id=1351076 - Issue Tracking
References (BID) http://www.securityfocus.com/bid/91502 - (BID) http://www.securityfocus.com/bid/91502 - Third Party Advisory, VDB Entry
References (MLIST) http://www.openwall.com/lists/oss-security/2016/06/28/6 - (MLIST) http://www.openwall.com/lists/oss-security/2016/06/28/6 - Mailing List
References (SECTRACK) http://www.securitytracker.com/id/1036190 - (SECTRACK) http://www.securitytracker.com/id/1036190 - Third Party Advisory, VDB Entry
CWE NVD-CWE-Other CWE-190

Information

Published : 2016-06-29 14:10

Updated : 2023-12-10 11:46


NVD link : CVE-2012-6703

Mitre link : CVE-2012-6703

CVE.ORG link : CVE-2012-6703


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-190

Integer Overflow or Wraparound