ELSA-2014-3104 -- Oracle kernel-uekID: oval:org.secpod.oval:def:1500825 | Date: (C)2015-01-02 (M)2024-05-22 |
Class: PATCH | Family: unix |
An out-of-bounds write flaw was found in the way the Apple Magic Mouse/Trackpad multi-touch driver handled Human Interface Device (HID) reports with an invalid size. An attacker with physical access to the system could use this flaw to crash the system or, potentially, escalate their privileges on the system.An information leak flaw was found in the way the Linux kernel handled media device enumerate entities IOCTL requests. A local user able to access the /dev/media0 device file could use this flaw to leak kernel memory bytes.