PT-2020-3177 · Linuxtv+2 · Xawtv+2
Matthias Gerstner
·
Published
2020-05-16
·
Updated
2024-06-15
·
CVE-2020-13696
CVSS v3.1
4.4
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
LinuxTV xawtv versions prior to 3.107
Description
The issue is related to insufficient checks in the dev open() function, allowing a local attacker to test for the existence of arbitrary files and trigger an open on arbitrary files with mode O RDWR. This can be achieved by adding relative path components to the device path. The vulnerability may allow an attacker to gain unauthorized access to protected information.
Recommendations
For LinuxTV xawtv versions prior to 3.107, consider updating to version 3.107 or later to resolve the issue. As a temporary workaround, restrict access to the v4l-conf setuid-root program to minimize the risk of exploitation. Avoid using relative path components in the device path to prevent unintended filesystem access.
Fix
Incorrect Authorization
Incorrect Permission
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Suse
Ubuntu
Xawtv