CVE-2017-16531: Buffer Overflow
drivers/usb/core/config.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device, related to the USBDTINTERFACEASSOCIATION descriptor.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-16531?
CVE-2017-16531 has a medium severity rating due to its potential to cause denial of service and system crashes.
How do I fix CVE-2017-16531?
To fix CVE-2017-16531, update the Linux kernel to version 4.13.6 or later.
What software versions are affected by CVE-2017-16531?
CVE-2017-16531 affects Linux kernel versions prior to 4.13.6, including various version ranges from 3.2 to 4.13.5.
Can CVE-2017-16531 be exploited remotely?
CVE-2017-16531 requires local access to exploit, as it involves crafted USB devices.
What kind of impact does CVE-2017-16531 have on systems?
CVE-2017-16531 can lead to out-of-bounds reads and potential system crashes, resulting in denial of service.