CVE-2017-16643: High severity android vulnerability
Last updated 29 November 2024
Other sources
The parsehidreportdescriptor function in drivers/input/tablet/gtco.c in the Linux kernel before 4.13.11 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
Affected Software
Remediation
Event History
Frequently Asked Questions
What types of impact can CVE-2017-16643 cause on the Linux kernel?
CVE-2017-16643 can lead to a denial of service through an out-of-bounds read and potentially cause a system crash.
How can I mitigate the risks of CVE-2017-16643?
To mitigate CVE-2017-16643, upgrade to a version of the Linux kernel that is higher than 4.13.11.
Is CVE-2017-16643 specific to any software distributions?
CVE-2017-16643 affects various distributions running vulnerable versions of the Linux kernel, including Android.
Which versions of the Linux kernel are vulnerable to CVE-2017-16643?
Versions of the Linux kernel prior to 4.13.11 are vulnerable to CVE-2017-16643.
What action should I take if my system uses an affected version mentioned in CVE-2017-16643?
If your system uses an affected version, you should upgrade to a patched version such as 5.10.223-1 or later to resolve CVE-2017-16643.