Back

MEDIUM

Kernel: HID: off by one error in various _report_fixup routines

Published Sep 28, 2014

Description

The report_fixup functions in the HID subsystem in the Linux kernel before 3.16.2 might allow physically proximate attackers to cause a denial of service (out-of-bounds write) via a crafted device that provides a small report descriptor, related to (1) drivers/hid/hid-cherry.c, (2) drivers/hid/hid-kye.c, (3) drivers/hid/hid-lg.c, (4) drivers/hid/hid-monterey.c, (5) drivers/hid/hid-petalynx.c, and (6) drivers/hid/hid-sunplus.c.

Affected products

Remediation

Red Hat statement

This issue did not affect the version of the kernel package as shipped with Red Hat Enterprise Linux 5.

Metrics

References (22)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Chrome
Published Sep 28, 2014
Updated Aug 6, 2024
Reserved May 3, 2014
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Aug 21, 2014