PT-2020-3177 · Linuxtv+2 · Xawtv+2

Matthias Gerstner

·

Published

2020-05-16

·

Updated

2024-06-15

·

CVE-2020-13696

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions LinuxTV xawtv versions prior to 3.107
Description The issue is related to insufficient checks in the dev open() function, allowing a local attacker to test for the existence of arbitrary files and trigger an open on arbitrary files with mode O RDWR. This can be achieved by adding relative path components to the device path. The vulnerability may allow an attacker to gain unauthorized access to protected information.
Recommendations For LinuxTV xawtv versions prior to 3.107, consider updating to version 3.107 or later to resolve the issue. As a temporary workaround, restrict access to the v4l-conf setuid-root program to minimize the risk of exploitation. Avoid using relative path components in the device path to prevent unintended filesystem access.

Fix

Incorrect Authorization

Incorrect Permission

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-03475
CVE-2020-13696
DLA-2246-1
MGASA-2020-0257
OPENSUSE-SU-2020:0784-1
OPENSUSE-SU-2020:0787-1
OPENSUSE-SU-2020_0784-1
OPENSUSE-SU-2024:11517-1
SUSE-SU-2020:1712-1
USN-4518-1

Affected Products

Suse
Ubuntu
Xawtv