The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory by leveraging /dev/media0 read access for a MEDIA_IOC_ENUM_ENTITIES ioctl call.
| Product | Vendor | Version |
|---|---|---|
| n/a | n/a | < 92a1df9c6da20c02cf9872f8b025a66ddb307aeb |