Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-8072

Опубликовано: 23 апр. 2017
Источник: debian
EPSS Низкий

Описание

The cp2112_gpio_direction_input function in drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 does not have the expected EIO error status for a zero-length report, which allows local users to have an unspecified impact via unknown vectors.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.9.10-1package
linuxnot-affectedjessiepackage
linuxnot-affectedwheezypackage

Примечания

  • Fixed by: https://git.kernel.org/linus/8e9faa15469ed7c7467423db4c62aeed3ff4cae3

EPSS

Процентиль: 34%
0.00407
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 9 лет назад

The cp2112_gpio_direction_input function in drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 does not have the expected EIO error status for a zero-length report, which allows local users to have an unspecified impact via unknown vectors.

CVSS3: 5.5
redhat
больше 9 лет назад

The cp2112_gpio_direction_input function in drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 does not have the expected EIO error status for a zero-length report, which allows local users to have an unspecified impact via unknown vectors.

CVSS3: 7.8
nvd
больше 9 лет назад

The cp2112_gpio_direction_input function in drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 does not have the expected EIO error status for a zero-length report, which allows local users to have an unspecified impact via unknown vectors.

CVSS3: 7.8
github
больше 4 лет назад

The cp2112_gpio_direction_input function in drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 does not have the expected EIO error status for a zero-length report, which allows local users to have an unspecified impact via unknown vectors.

CVSS3: 7.8
fstec
больше 9 лет назад

Уязвимость операционной системы Linux, позволяющая нарушителю оказать произвольное воздействие

EPSS

Процентиль: 34%
0.00407
Низкий