CVE-2014-1739
published 2014-06-23CVE-2014-1739: The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which…
PriorityP411low2.1CVSS 2.0
AVLACLAuNCPINAN
EXPLOIT
EPSS
1.12%
62.6th percentile
The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by leveraging /dev/media0 read access for a MEDIA_IOC_ENUM_ENTITIES ioctl call.
Affected
20 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | linux | < linux 3.14.7-1 (bookworm) | linux 3.14.7-1 (bookworm) |
| debian | linux | < linux 3.11.5-1 (bookworm) | linux 3.11.5-1 (bookworm) |
| android | <= 6.0.1 | — | |
| android | — | — | |
| linux | linux_kernel | < 3.14.6 | 3.14.6 |
| linux | linux_kernel | <= 3.10.102 | — |
| linux | linux_kernel | >= 0 < 3.14.7-1 | 3.14.7-1 |
| linux | linux_kernel | >= 0 < 3.11.5-1 | 3.11.5-1 |
| linux | linux_kernel | >= 0 < 3.14.7-1 | 3.14.7-1 |
| linux | linux_kernel | >= 0 < 3.11.5-1 | 3.11.5-1 |
| linux | linux_kernel | >= 0 < 3.14.7-1 | 3.14.7-1 |
| linux | linux_kernel | >= 0 < 3.11.5-1 | 3.11.5-1 |
| linux | linux_kernel | >= 0 < 3.14.7-1 | 3.14.7-1 |
| linux | linux_kernel | >= 0 < 3.11.5-1 | 3.11.5-1 |
| linux | linux_kernel | >= 0 < 3.13.0-32.57 | 3.13.0-32.57 |
| suse | linux_enterprise_high_availability_extension | — | — |
| suse | suse_linux_enterprise_desktop | — | — |
| suse | suse_linux_enterprise_server | — | — |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv2.1LOW
vendor_ubuntu2.9LOW
vendor_debian2.1LOW
vendor_redhat2.1LOW
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mcwf-f64m-6vhh: drivers/media/media-device
ghsa_unreviewed·2022-05-17·CVSS 2.1
CVE-2014-9895 [LOW] CWE-200 GHSA-mcwf-f64m-6vhh: drivers/media/media-device
drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly initialize certain data structures, which allows local users to obtain sensitive information via a crafted application, aka Android internal bug 28750150 and Qualcomm internal bug CR570757, a different vulnerability than CVE-2014-1739.
GHSA
GHSA-pqjc-5x4q-33rx: The media_device_enum_entities function in drivers/media/media-device
ghsa_unreviewed·2022-05-13
CVE-2014-1739 [LOW] CWE-200 GHSA-pqjc-5x4q-33rx: The media_device_enum_entities function in drivers/media/media-device
The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by leveraging /dev/media0 read access for a MEDIA_IOC_ENUM_ENTITIES ioctl call.
OSV
CVE-2014-9895: drivers/media/media-device
osv·2016-08-06·CVSS 2.1
CVE-2014-9895 [LOW] CVE-2014-9895: drivers/media/media-device
drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly initialize certain data structures, which allows local users to obtain sensitive information via a crafted application, aka Android internal bug 28750150 and Qualcomm internal bug CR570757, a different vulnerability than CVE-2014-1739.
OSV
linux vulnerabilities
osv·2014-07-17·CVSS 2.1
CVE-2014-4943 [LOW] linux vulnerabilities
linux vulnerabilities
Sasha Levin reported a flaw in the Linux kernel's point-to-point protocol
(PPP) when used with the Layer Two Tunneling Protocol (L2TP). A local user
could exploit this flaw to gain administrative privileges. (CVE-2014-4943)
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
A bounds check error was discovered in the socket filter subsystem of the
Linux kernel. A local user could exploit this flaw to cause a denial of
service (system crash) via crafted BPF instructions. (CVE-2014-3144)
A remainder calculation error was discovered in the socket filter subsystem
of the Linux kernel. A local user could exploit this flaw to ca
OSV
CVE-2014-1739: The media_device_enum_entities function in drivers/media/media-device
osv·2014-06-23·CVSS 2.1
CVE-2014-1739 [LOW] CVE-2014-1739: The media_device_enum_entities function in drivers/media/media-device
The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by leveraging /dev/media0 read access for a MEDIA_IOC_ENUM_ENTITIES ioctl call.
Kernel
[media] media-device: fix infoleak in ioctl media_enum_entities()
kernel_security·2014-04-30·CVSS 2.1
CVE-2014-1739 [LOW] [media] media-device: fix infoleak in ioctl media_enum_entities()
[media] media-device: fix infoleak in ioctl media_enum_entities()
This fixes CVE-2014-1739.
Signed-off-by: Salva Peiró
Acked-by: Laurent Pinchart
Cc: [email protected]
Signed-off-by: Mauro Carvalho Chehab
Android
CVE-2014-1739: Android Security Bulletin 2017-04-01
CVE: CVE-2014-1739
Severity: MEDIUM
References: A-34460642
Upstream kernel
vendor_android·2017-04-01·CVSS 2.1
CVE-2014-1739 [LOW] CVE-2014-1739: Android Security Bulletin 2017-04-01
CVE: CVE-2014-1739
Severity: MEDIUM
References: A-34460642
Upstream kernel
Android Security Bulletin 2017-04-01
CVE: CVE-2014-1739
Severity: MEDIUM
References: A-34460642
Upstream kernel
Ubuntu
Linux kernel (Quantal HWE) vulnerabilities
vendor_ubuntu·2014-07-17·CVSS 2.9
CVE-2014-0131 [LOW] Linux kernel (Quantal HWE) vulnerabilities
Title: Linux kernel (Quantal HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Sasha Levin reported a flaw in the Linux kernel's point-to-point protocol
(PPP) when used with the Layer Two Tunneling Protocol (L2TP). A local user
could exploit this flaw to gain administrative privileges. (CVE-2014-4943)
Michael S. Tsirkin discovered an information leak in the Linux kernel's
segmentation of skbs when using the zerocopy feature of vhost-net. A local
attacker could exploit this flaw to gain potentially sensitive information
from kernel memory. (CVE-2014-0131)
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
An flaw
Ubuntu
Linux kernel (Raring HWE) vulnerabilities
vendor_ubuntu·2014-07-17·CVSS 2.9
CVE-2014-0131 [LOW] Linux kernel (Raring HWE) vulnerabilities
Title: Linux kernel (Raring HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Sasha Levin reported a flaw in the Linux kernel's point-to-point protocol
(PPP) when used with the Layer Two Tunneling Protocol (L2TP). A local user
could exploit this flaw to gain administrative privileges. (CVE-2014-4943)
Michael S. Tsirkin discovered an information leak in the Linux kernel's
segmentation of skbs when using the zerocopy feature of vhost-net. A local
attacker could exploit this flaw to gain potentially sensitive information
from kernel memory. (CVE-2014-0131)
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
A bounds
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2014-07-17·CVSS 2.1
CVE-2014-1739 [LOW] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Sasha Levin reported a flaw in the Linux kernel's point-to-point protocol
(PPP) when used with the Layer Two Tunneling Protocol (L2TP). A local user
could exploit this flaw to gain administrative privileges. (CVE-2014-4943)
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
A bounds check error was discovered in the socket filter subsystem of the
Linux kernel. A local user could exploit this flaw to cause a denial of
service (system crash) via crafted BPF instructions. (CVE-2014-3144)
A remainder calculation error was discovered in the socket filter
Ubuntu
Linux kernel (Trusty HWE) vulnerabilities
vendor_ubuntu·2014-07-17·CVSS 2.1
CVE-2014-1739 [LOW] Linux kernel (Trusty HWE) vulnerabilities
Title: Linux kernel (Trusty HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Sasha Levin reported a flaw in the Linux kernel's point-to-point protocol
(PPP) when used with the Layer Two Tunneling Protocol (L2TP). A local user
could exploit this flaw to gain administrative privileges. (CVE-2014-4943)
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
A bounds check error was discovered in the socket filter subsystem of the
Linux kernel. A local user could exploit this flaw to cause a denial of
service (system crash) via crafted BPF instructions. (CVE-2014-3144)
A remainder calculation error was discovered in the
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2014-06-27·CVSS 2.1
CVE-2014-1739 [LOW] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the kernel.
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
A bounds check error was discovered in the socket filter subsystem of the
Linux kernel. A local user could exploit this flaw to cause a denial of
service (system crash) via crafted BPF instructions. (CVE-2014-3144)
A remainder calculation error was discovered in the socket filter subsystem
of the Linux kernel. A local user could exploit this flaw to cause a denial
of service (system crash) via crafted BPF instructions. (CVE-2014-3145)
Instructions: After a standard system update you need to reboot y
Ubuntu
Linux kernel (OMAP4) vulnerabilities
vendor_ubuntu·2014-06-27·CVSS 2.1
CVE-2014-1739 [LOW] Linux kernel (OMAP4) vulnerabilities
Title: Linux kernel (OMAP4) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
A bounds check error was discovered in the socket filter subsystem of the
Linux kernel. A local user could exploit this flaw to cause a denial of
service (system crash) via crafted BPF instructions. (CVE-2014-3144)
A remainder calculation error was discovered in the socket filter subsystem
of the Linux kernel. A local user could exploit this flaw to cause a denial
of service (system crash) via crafted BPF instructions. (CVE-2014-3145)
Instructions: After a standard system update you need to
Ubuntu
Linux kernel (Saucy HWE) vulnerabilities
vendor_ubuntu·2014-06-27·CVSS 2.1
CVE-2014-1739 [LOW] Linux kernel (Saucy HWE) vulnerabilities
Title: Linux kernel (Saucy HWE) vulnerabilities
Summary: Several security issues were fixed in the kernel.
Salva Peiró discovered an information leak in the Linux kernel's media-
device driver. A local attacker could exploit this flaw to obtain sensitive
information from kernel memory. (CVE-2014-1739)
A bounds check error was discovered in the socket filter subsystem of the
Linux kernel. A local user could exploit this flaw to cause a denial of
service (system crash) via crafted BPF instructions. (CVE-2014-3144)
A remainder calculation error was discovered in the socket filter subsystem
of the Linux kernel. A local user could exploit this flaw to cause a denial
of service (system crash) via crafted BPF instructions. (CVE-2014-3145)
Instructions: After a standard system update you need
Red Hat
Kernel: drivers: media: an information leakage
vendor_redhat·2014-04-30·CVSS 2.1
CVE-2014-1739 [LOW] Kernel: drivers: media: an information leakage
Kernel: drivers: media: an information leakage
The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by leveraging /dev/media0 read access for a MEDIA_IOC_ENUM_ENTITIES ioctl call.
An information leak flaw was found in the way the Linux kernel handled media device enumerate entities IOCTL requests. A local user able to access the /dev/media0 device file could use this flaw to leak kernel memory bytes.
Statement: This issue does not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6 and Red Hat Enterprise MRG 2.
Package: kernel (Red Hat Enterprise Linux 5) - No
Debian
CVE-2014-1739: linux - The media_device_enum_entities function in drivers/media/media-device.c in the L...
vendor_debian·2014·CVSS 2.1
CVE-2014-1739 [LOW] CVE-2014-1739: linux - The media_device_enum_entities function in drivers/media/media-device.c in the L...
The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by leveraging /dev/media0 read access for a MEDIA_IOC_ENUM_ENTITIES ioctl call.
Scope: local
bookworm: resolved (fixed in 3.14.7-1)
bullseye: resolved (fixed in 3.14.7-1)
forky: resolved (fixed in 3.14.7-1)
sid: resolved (fixed in 3.14.7-1)
trixie: resolved (fixed in 3.14.7-1)
Debian
CVE-2014-9895: linux - drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android...
vendor_debian·2014·CVSS 2.1
CVE-2014-9895 [LOW] CVE-2014-9895: linux - drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android...
drivers/media/media-device.c in the Linux kernel before 3.11, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not properly initialize certain data structures, which allows local users to obtain sensitive information via a crafted application, aka Android internal bug 28750150 and Qualcomm internal bug CR570757, a different vulnerability than CVE-2014-1739.
Scope: local
bookworm: resolved (fixed in 3.11.5-1)
bullseye: resolved (fixed in 3.11.5-1)
forky: resolved (fixed in 3.11.5-1)
sid: resolved (fixed in 3.11.5-1)
trixie: resolved (fixed in 3.11.5-1)
No detection rules found.
Bugzilla
CVE-2014-1739 Kernel: drivers: media: an information leakage [fedora-all]
bugzilla·2014-06-16·CVSS 2.1
CVE-2014-1739 [LOW] CVE-2014-1739 Kernel: drivers: media: an information leakage [fedora-all]
CVE-2014-1739 Kernel: drivers: media: an information leakage [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, use the bodhi submission link noted
in the next comment(s). This will include the bug IDs of this tracking
bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
NOTE: this issue affects multiple supp
Bugzilla
CVE-2014-1739 Kernel: drivers: media: an information leakage
bugzilla·2014-06-16·CVSS 2.1
CVE-2014-1739 [LOW] CVE-2014-1739 Kernel: drivers: media: an information leakage
CVE-2014-1739 Kernel: drivers: media: an information leakage
Linux kernel built with the Multimedia support(CONFIG_MEDIA_SUPPORT) to enable
web-cam, video grabber devices, is vulnerable to an information leakage flaw.
It could occur while doing an ioctl(2) call on a media device file.
A user/process able to access the /dev/media0 device file could use this flaw
to leak kernel memory bytes.
Upstream fix:
-> https://git.kernel.org/linus/e6a623460e5fc960ac3ee9f946d3106233fd28d8
Reference:
-> http://www.openwall.com/lists/oss-security/2014/06/15/1
Discussion:
Statement:
This issue does not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 5, Red Hat Enterprise Linux 6 and Red Hat Enterprise MRG 2.
---
Created kernel tracking bugs for this issue:
Affects: fe
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=e6a623460e5fc960ac3ee9f946d3106233fd28d8http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-10/msg00007.htmlhttp://secunia.com/advisories/59597http://speirofr.appspot.com/cve-2014-1739-kernel-infoleak-vulnerability-in-media_enum_entities.htmlhttp://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.14.6http://www.openwall.com/lists/oss-security/2014/06/15/1http://www.securityfocus.com/bid/68048http://www.securitytracker.com/id/1038201http://www.ubuntu.com/usn/USN-2259-1http://www.ubuntu.com/usn/USN-2261-1http://www.ubuntu.com/usn/USN-2263-1http://www.ubuntu.com/usn/USN-2264-1https://bugzilla.redhat.com/show_bug.cgi?id=1109774https://github.com/torvalds/linux/commit/e6a623460e5fc960ac3ee9f946d3106233fd28d8https://source.android.com/security/bulletin/2017-04-01http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=e6a623460e5fc960ac3ee9f946d3106233fd28d8http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-10/msg00007.htmlhttp://secunia.com/advisories/59597http://speirofr.appspot.com/cve-2014-1739-kernel-infoleak-vulnerability-in-media_enum_entities.htmlhttp://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.14.6http://www.openwall.com/lists/oss-security/2014/06/15/1http://www.securityfocus.com/bid/68048http://www.securitytracker.com/id/1038201http://www.ubuntu.com/usn/USN-2259-1http://www.ubuntu.com/usn/USN-2261-1http://www.ubuntu.com/usn/USN-2263-1http://www.ubuntu.com/usn/USN-2264-1https://bugzilla.redhat.com/show_bug.cgi?id=1109774https://github.com/torvalds/linux/commit/e6a623460e5fc960ac3ee9f946d3106233fd28d8https://source.android.com/security/bulletin/2017-04-01
2014-06-23
Published