CVE-2017-16645 - log back

CVE-2017-16645 created at 25 Sep 2019 19:31:40
Severity
+ Medium
Remote
+ Local
Type
+ Denial of service
Description
+ The ims_pcu_get_cdc_union_desc function in drivers/input/misc/ims-pcu.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (ims_pcu_parse_cdc_data out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
References
+ https://groups.google.com/forum/#!topic/syzkaller/q6jjr1OhqO8
+ https://git.kernel.org/linus/ea04efee7635c9120d015dcdeeeb6988130cb67a
Notes