UBUNTU-CVE-2014-3184
Dashboard / Vulnerabilities / UBUNTU-CVE-2014-3184
UBUNTU-CVE-2014-3184
Summary:
Details: The report_fixup functions in the HID subsystem in the Linux kernel before 3.16.2 might allow physically proximate attackers to cause a denial of service (out-of-bounds write) via a crafted device that provides a small report descriptor, related to (1) drivers/hid/hid-cherry.c, (2) drivers/hid/hid-kye.c, (3) drivers/hid/hid-lg.c, (4) drivers/hid/hid-monterey.c, (5) drivers/hid/hid-petalynx.c, and (6) drivers/hid/hid-sunplus.c.
References: https://ubuntu.com/security/CVE-2014-3184, https://code.google.com/p/google-security-research/issues/detail?id=91, http://www.openwall.com/lists/oss-security/2014/09/11, https://ubuntu.com/security/notices/USN-2374-1, https://ubuntu.com/security/notices/USN-2375-1, https://ubuntu.com/security/notices/USN-2376-1, https://ubuntu.com/security/notices/USN-2377-1, https://ubuntu.com/security/notices/USN-2378-1, https://ubuntu.com/security/notices/USN-2379-1, https://www.cve.org/CVERecord?id=CVE-2014-3184
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/linux?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
