[SRU OEM-5.17 0/1] CVE-2022-3303

Cengiz Can cengiz.can at canonical.com
Thu Apr 13 14:17:55 UTC 2023


[Impact]
It was discovered that the sound subsystem in the Linux kernel contained a race
condition in some situations. A local attacker could use this to cause a denial
of service (system crash).

[Fix]
Cherry picked from upstream.

[Test case]
Compile and boot tested only.

[Potential regression]
Low. Changes a call to use a locked version instead. Unlock label already exists
so very unlikely to cause deadlocks.

Takashi Iwai (1):
  ALSA: pcm: oss: Fix race at SNDCTL_DSP_SYNC

 sound/core/oss/pcm_oss.c | 6 +++---
 1 file changed, 3 insertions(+), 3 deletions(-)

-- 
2.37.2




More information about the kernel-team mailing list