CVE-2023-52680

ALSA: scarlett2: Add missing error checks to *_ctl_get()

References

Notes

 carnil> Introduced in 9e4d5c1be21f ("ALSA: usb-audio: Scarlett Gen 2 mixer interface").
 carnil> Vulnerable versions: 5.4-rc1.

Bugs

Status

Branch Status
upstream released (6.8-rc1) [50603a67daef161c78c814580d57f7f0be57167e]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.8-upstream-stable N/A "Fixed before branching point"
6.6-upstream-stable released (6.6.14) [821fbaeaaae23d483d3df799fe91ec8045973ec3]
6.1-upstream-stable released (6.1.75) [cda7762bea857e6951315a2f7d0632ea1850ed43]
5.10-upstream-stable needed
4.19-upstream-stable N/A "Vulnerable code not present"
sid released (6.6.15-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security released (6.1.76-1)
5.10-bullseye-security needed
4.19-buster-security N/A "Vulnerable code not present"