Wind River Support Network

HomeDefectsLIN6-14007
Fixed

LIN6-14007 : Security Advisory - linux - CVE-2017-15102

Created: Nov 27, 2017    Updated: Dec 3, 2018
Resolved Date: Dec 25, 2017
Found In Version: 6.0
Fix Version: 6.0.0.36
Severity: Standard
Applicable for: Wind River Linux 6
Component/s: Kernel

Description

The tower_probe function in drivers/usb/misc/legousbtower.c in the Linux kernel before 4.8.1 allows local users (who are physically proximate for inserting a crafted USB device) to gain privileges by leveraging a write-what-where condition that occurs after a race condition and a NULL pointer dereference.

Other Downloads


Live chat
Online