Wind River Support Network

HomeDefectsLIN10-2486
Fixed

LIN10-2486 : Security Advisory - linux - CVE-2017-16529

Created: Nov 13, 2017    Updated: May 29, 2018
Resolved Date: Dec 5, 2017
Found In Version: 10.17.41.1
Fix Version: 10.17.41.2
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Kernel

Description

The snd_usb_create_streams function in sound/usb/card.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.

https://nvd.nist.gov/vuln/detail/CVE-2017-16529

CVEs


Live chat
Online