CVE-2017-16527: Use After Free
Last updated 29 November 2024
Other sources
sound/usb/mixer.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (sndusbmixerinterrupt use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-16527?
CVE-2017-16527 has been classified with a medium severity level due to its potential to cause a denial of service.
How do I fix CVE-2017-16527?
To fix CVE-2017-16527, update the Linux kernel to version 4.13.8 or later.
Which versions of Linux are affected by CVE-2017-16527?
CVE-2017-16527 affects Linux kernel versions before 4.13.8, specifically including versions 3.2.95 and between 3.3 and 4.13.7.
What can happen if CVE-2017-16527 is exploited?
Exploitation of CVE-2017-16527 can lead to a denial of service condition or system crash when handling crafted USB devices.
Who is at risk for CVE-2017-16527?
Local users on systems running vulnerable versions of the Linux kernel are at risk from CVE-2017-16527.