Wind River Support Network

HomeDefectsLIN10-2499
Fixed

LIN10-2499 : Security Advisory - linux - CVE-2017-16534

Created: Nov 13, 2017    Updated: May 29, 2018
Resolved Date: Dec 5, 2017
Found In Version: 10.17.41.1
Fix Version: 10.17.41.2
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Kernel

Description

The cdc_parse_cdc_header function in drivers/usb/core/message.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.

https://nvd.nist.gov/vuln/detail/CVE-2017-16534

CVEs


Live chat
Online