aboutsummaryrefslogtreecommitdiffstats
path: root/include
diff options
context:
space:
mode:
authorKees Cook <keescook@chromium.org>2013-08-28 22:30:49 +0200
committerGreg Kroah-Hartman <gregkh@linuxfoundation.org>2013-09-26 16:52:47 -0700
commitc993386d8c99c60ffb1161076040f3ffb46c0794 (patch)
tree55aaa0245721002aa66ad37562a8e5a23caaf1fe /include
parent8600be1d3927e177b80c7ee9263ef3b28a0ba115 (diff)
downloadkernel_samsung_smdk4412-c993386d8c99c60ffb1161076040f3ffb46c0794.zip
kernel_samsung_smdk4412-c993386d8c99c60ffb1161076040f3ffb46c0794.tar.gz
kernel_samsung_smdk4412-c993386d8c99c60ffb1161076040f3ffb46c0794.tar.bz2
HID: pantherlord: validate output report details
commit 412f30105ec6735224535791eed5cdc02888ecb4 upstream. A HID device could send a malicious output report that would cause the pantherlord HID driver to write beyond the output report allocation during initialization, causing a heap overflow: [ 310.939483] usb 1-1: New USB device found, idVendor=0e8f, idProduct=0003 ... [ 315.980774] BUG kmalloc-192 (Tainted: G W ): Redzone overwritten CVE-2013-2892 Signed-off-by: Kees Cook <keescook@chromium.org> Signed-off-by: Jiri Kosina <jkosina@suse.cz> Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
Diffstat (limited to 'include')
0 files changed, 0 insertions, 0 deletions