CVE-2017-16536

Source
Severity Medium
Remote No
Type Denial of service
Description
The cx231xx_usb_probe function in drivers/media/usb/cx231xx/cx231xx-cards.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted USB device.
Group Package Affected Fixed Severity Status Ticket
AVG-483 linux 4.13.11-1 4.14-1 High Fixed
References
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=6c3b047fa2d2286d5e438bcb470c7b1a49f415f6
https://groups.google.com/forum/#!topic/syzkaller/WlUAVfDvpRk