CVE-2019-18675 -- linux-imageID: oval:org.secpod.oval:def:2003598 | Date: (C)2020-09-25 (M)2024-05-22 |
Class: VULNERABILITY | Family: unix |
The Linux kernel through 5.3.13 has a start_offset+size Integer Overflow in cpia2_remap_buffer in drivers/media/usb/cpia2/cpia2_core.c because cpia2 has its own mmap implementation. This allows local users to obtain read and write permissions on kernel physical pages, which can possibly result in a privilege escalation.
Platform: |
Debian 10.x |
Debian 9.x |
Product: |
linux-image-4.9 |
linux-image-4 |