Oval Definition:oval:com.ubuntu.artful:def:20177273000
Revision Date:2017-03-27Version:1
Title:CVE-2017-7273 on Ubuntu 17.10 (artful) - medium.
Description:The cp_report_fixup function in drivers/hid/hid-cypress.c in the Linux kernel 4.x before 4.9.4 allows physically proximate attackers to cause a denial of service (integer underflow) or possibly have unspecified other impact via a crafted HID report. It was discovered that the USB Cypress HID drivers for the Linux kernel did not properly validate reported information from the device. An attacker with physical access could use this to expose sensitive information (kernel memory).
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-7273
Platform(s):Ubuntu 17.10
Product(s):
Definition Synopsis
  • Ubuntu 17.10 (artful) is installed.
  • AND Package Information
  • NOT While related to the CVE in some way, the 'linux' package in artful is not affected (note: '4.10.0-19.21').
  • OR NOT While related to the CVE in some way, the 'linux-raspi2' package in artful is not affected (note: '4.10.0-1004.6').
  • OR NOT While related to the CVE in some way, the 'linux-snapdragon' package in artful is not affected (note: '4.4.0-1050.54').
  • BACK