Back

HIGH

usb: gadget: rndis: prevent integer overflow in rndis_set_response()

Published Jul 16, 2024

Description

If "BufOffset" is very large the "BufOffset + 8" operation can have an integer overflow.

Affected products

Remediation

Red Hat statement

Red Hat Product Security has decided to rate this potential vulnerability as Moderate. Red Hat has protection mechanisms in place against buffer overflows, such as FORTIFY_SOURCE, Position Independent Executables or Stack Smashing Protection.

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Linux
Published Jul 16, 2024
Updated May 11, 2026
Reserved Jul 16, 2024
CISA Vulnrichment
Updated Sep 10, 2024
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Jul 16, 2024