Back to bug 1402885

Who When What Removed Added
Vladis Dronov 2016-12-08 14:39:11 UTC Blocks 1395247
Vladis Dronov 2016-12-08 14:41:00 UTC Doc Text The xc2028_set_config function in drivers/media/tuners/tuner-xc2028.c in the Linux kernel before 4.6 allows local users to gain privileges or cause a denial of service (use-after-free) via vectors involving omission of the firmware name from a certain data structure. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although we believe it is unlikely.
Doc Type If docs needed, set a value Bug Fix
Vladis Dronov 2016-12-08 14:42:43 UTC Depends On 1402888
Vladis Dronov 2016-12-08 14:49:16 UTC Depends On 1402893
Vladis Dronov 2016-12-08 14:49:18 UTC Depends On 1402894
Vladis Dronov 2016-12-08 14:49:26 UTC Depends On 1402895
Vladis Dronov 2016-12-08 14:49:35 UTC Depends On 1402896
PnT Account Manager 2018-02-07 23:22:09 UTC CC agordeev
errata-xmlrpc 2018-04-10 08:04:35 UTC Link ID Red Hat Product Errata RHSA-2018:0676
errata-xmlrpc 2018-04-10 09:28:18 UTC Link ID Red Hat Product Errata RHSA-2018:1062
Stephan Zeisberg 2018-07-09 15:41:58 UTC CC stephan
PnT Account Manager 2018-07-19 06:23:17 UTC CC mguzik
PnT Account Manager 2018-08-28 22:11:01 UTC CC lwang
Eric Sammons 2019-02-08 15:02:36 UTC CC esammons
PnT Account Manager 2019-02-28 22:31:20 UTC CC jkastner
Marc Milgram 2019-04-02 15:10:35 UTC CC mmilgram
Pedro Sampaio 2019-04-03 19:08:43 UTC Depends On 1695830, 1695829
errata-xmlrpc 2019-05-14 19:08:17 UTC Link ID Red Hat Product Errata RHSA-2019:1170
errata-xmlrpc 2019-05-14 20:26:34 UTC Link ID Red Hat Product Errata RHSA-2019:1190
Product Security DevOps Team 2019-06-08 03:03:55 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2019-06-08 03:03:55 UTC
Product Security DevOps Team 2019-09-29 14:02:45 UTC Whiteboard impact=moderate,public=20160128,reported=20160128,source=git,cvss2=9.3/AV:N/AC:M/Au:N/C:C/I:C/A:C,cvss3=7.8/CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H,cwe=CWE-416,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=affected,fedora-all/kernel=affected

Back to bug 1402885