Database/Kernel, userspace & hypervisor
Linux kernel (uvcvideo): Out-of-bounds write parsing UVC_VS_UNDEFINED frames - exploited in the wild
CVE-2024-53104Kernel, userspace & hypervisorKnown exploitedcurated
Impact
Out-of-bounds write parsing UVC_VS_UNDEFINED frames - exploited in the wild [KEV]
Who can reach it
Local user with USB/device access
What to do
Livepatchable; otherwise drain + reboot. Near-zero exposure on headless GPU servers - deprioritise behind the netfilter set, but it will still show on every compliance scan
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.