UBUNTU-CVE-2023-28328
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-28328
UBUNTU-CVE-2023-28328
Summary:
Details: A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel. The message from user space is not checked properly before transferring into the device. This flaw allows a local user to crash the system or potentially cause a denial of service.
References: https://ubuntu.com/security/CVE-2023-28328, https://access.redhat.com/security/cve/CVE-2023-28328, https://lore.kernel.org/lkml/CAO4mrfcPHB5aQJO=mpqV+p8mPLNg-Fok0gw8gZ=zemAfMGTzMg@mail.gmail.com/, https://ubuntu.com/security/notices/USN-5975-1, https://ubuntu.com/security/notices/USN-5981-1, https://ubuntu.com/security/notices/USN-5982-1, https://ubuntu.com/security/notices/USN-5984-1, https://ubuntu.com/security/notices/USN-5987-1, https://ubuntu.com/security/notices/USN-5991-1, https://ubuntu.com/security/notices/USN-6000-1, https://ubuntu.com/security/notices/USN-6004-1, https://ubuntu.com/security/notices/USN-6009-1, https://ubuntu.com/security/notices/USN-6024-1, https://ubuntu.com/security/notices/USN-6030-1, https://ubuntu.com/security/notices/USN-6149-1, https://ubuntu.com/security/notices/USN-6385-1, https://www.cve.org/CVERecord?id=CVE-2023-28328
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
