An issue was discovered in the Linux kernel 3.16 through 5.5.6. set_fdc in drivers/block/floppy.c leads to a wait_til_ready out-of-bounds read because the FDC index is not checked for errors before assigning it, aka CID-2e90ca68b0d2.
Product | Vendor | Version |
---|---|---|
n/a | n/a | < 1b7b7bb400dd13dcb03fc6e591bb7ca4664bbec8 |