1
PublicDateAtUSN: 2017-11-03
2
Candidate: CVE-2017-16533
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-16533
6
https://github.com/torvalds/linux/commit/f043bfc98c193c284e2cd768fefabe18ac2fed9b
7
https://groups.google.com/d/msg/syzkaller/CxkJ9QZgwlM/O3IOvAaGAwAJ
8
https://usn.ubuntu.com/usn/usn-3485-1
9
https://usn.ubuntu.com/usn/usn-3485-2
10
https://usn.ubuntu.com/usn/usn-3487-1
11
https://usn.ubuntu.com/usn/usn-3485-3
13
The usbhid_parse function in drivers/hid/usbhid/hid-core.c in the Linux
14
kernel before 4.13.8 allows local users to cause a denial of service
15
(out-of-bounds read and system crash) or possibly have unspecified other
16
impact via a crafted USB device.
18
Andrey Konovalov discovered that the USB subsystem in the Linux kernel did
19
not properly validate USB HID descriptors. A physically proximate attacker
20
could use this to cause a denial of service (system crash).
24
Discovered-by: Andrey Konovalov
28
break-fix: - f043bfc98c193c284e2cd768fefabe18ac2fed9b
29
upstream_linux: released (4.14~rc5)
30
precise/esm_linux: ignored (was needed ESM criteria)
32
xenial_linux: released (4.4.0-101.124)
33
zesty_linux: ignored (reached end-of-life)
34
artful_linux: released (4.13.0-17.20)
35
bionic_linux: not-affected (4.13.0-17.20)
36
devel_linux: not-affected (4.15.0-20.21)
38
Patches_linux-ti-omap4:
39
upstream_linux-ti-omap4: released (4.14~rc5)
40
precise/esm_linux-ti-omap4: DNE
41
trusty_linux-ti-omap4: DNE
42
xenial_linux-ti-omap4: DNE
43
zesty_linux-ti-omap4: DNE
44
artful_linux-ti-omap4: DNE
45
bionic_linux-ti-omap4: DNE
46
devel_linux-ti-omap4: DNE
48
Patches_linux-linaro-omap:
49
upstream_linux-linaro-omap: released (4.14~rc5)
50
precise/esm_linux-linaro-omap: DNE
51
trusty_linux-linaro-omap: DNE
52
xenial_linux-linaro-omap: DNE
53
zesty_linux-linaro-omap: DNE
54
artful_linux-linaro-omap: DNE
55
bionic_linux-linaro-omap: DNE
56
devel_linux-linaro-omap: DNE
58
Patches_linux-linaro-shared:
59
upstream_linux-linaro-shared: released (4.14~rc5)
60
precise/esm_linux-linaro-shared: DNE
61
trusty_linux-linaro-shared: DNE
62
xenial_linux-linaro-shared: DNE
63
zesty_linux-linaro-shared: DNE
64
artful_linux-linaro-shared: DNE
65
bionic_linux-linaro-shared: DNE
66
devel_linux-linaro-shared: DNE
68
Patches_linux-linaro-vexpress:
69
upstream_linux-linaro-vexpress: released (4.14~rc5)
70
precise/esm_linux-linaro-vexpress: DNE
71
trusty_linux-linaro-vexpress: DNE
72
xenial_linux-linaro-vexpress: DNE
73
zesty_linux-linaro-vexpress: DNE
74
artful_linux-linaro-vexpress: DNE
75
bionic_linux-linaro-vexpress: DNE
76
devel_linux-linaro-vexpress: DNE
78
Patches_linux-qcm-msm:
79
upstream_linux-qcm-msm: released (4.14~rc5)
80
precise/esm_linux-qcm-msm: DNE
81
trusty_linux-qcm-msm: DNE
82
xenial_linux-qcm-msm: DNE
83
zesty_linux-qcm-msm: DNE
84
artful_linux-qcm-msm: DNE
85
bionic_linux-qcm-msm: DNE
86
devel_linux-qcm-msm: DNE
88
Tags_linux-armadaxp: not-ue
89
Patches_linux-armadaxp:
90
upstream_linux-armadaxp: released (4.14~rc5)
91
precise/esm_linux-armadaxp: DNE
92
trusty_linux-armadaxp: DNE
93
xenial_linux-armadaxp: DNE
94
zesty_linux-armadaxp: DNE
95
artful_linux-armadaxp: DNE
96
bionic_linux-armadaxp: DNE
97
devel_linux-armadaxp: DNE
99
Tags_linux-lts-quantal: not-ue
100
Patches_linux-lts-quantal: DNE
101
upstream_linux-lts-quantal: released (4.14~rc5)
102
precise/esm_linux-lts-quantal: ignored (end-of-life)
103
trusty_linux-lts-quantal: DNE
104
xenial_linux-lts-quantal: DNE
105
zesty_linux-lts-quantal: DNE
106
artful_linux-lts-quantal: DNE
107
bionic_linux-lts-quantal: DNE
108
devel_linux-lts-quantal: DNE
110
Patches_linux-lts-raring:
111
upstream_linux-lts-raring: released (4.14~rc5)
112
precise/esm_linux-lts-raring: ignored (end-of-life)
113
trusty_linux-lts-raring: DNE
114
xenial_linux-lts-raring: DNE
115
zesty_linux-lts-raring: DNE
116
artful_linux-lts-raring: DNE
117
bionic_linux-lts-raring: DNE
118
devel_linux-lts-raring: DNE
120
Tags_linux-lts-saucy: not-ue
121
Patches_linux-lts-saucy:
122
upstream_linux-lts-saucy: released (4.14~rc5)
123
precise/esm_linux-lts-saucy: ignored (end-of-life)
124
trusty_linux-lts-saucy: DNE
125
xenial_linux-lts-saucy: DNE
126
zesty_linux-lts-saucy: DNE
127
artful_linux-lts-saucy: DNE
128
bionic_linux-lts-saucy: DNE
129
devel_linux-lts-saucy: DNE
131
Patches_linux-lts-trusty:
132
upstream_linux-lts-trusty: released (4.14~rc5)
133
precise/esm_linux-lts-trusty: ignored (was needed ESM criteria)
134
trusty_linux-lts-trusty: DNE
135
xenial_linux-lts-trusty: DNE
136
zesty_linux-lts-trusty: DNE
137
artful_linux-lts-trusty: DNE
138
bionic_linux-lts-trusty: DNE
139
devel_linux-lts-trusty: DNE
141
Patches_linux-goldfish:
142
upstream_linux-goldfish: released (4.14~rc5)
143
precise/esm_linux-goldfish: DNE
144
trusty_linux-goldfish: ignored (abandoned)
145
xenial_linux-goldfish: ignored (was needed now end-of-life)
146
zesty_linux-goldfish: ignored (reached end-of-life)
147
artful_linux-goldfish: DNE
148
bionic_linux-goldfish: DNE
149
devel_linux-goldfish: DNE
151
Patches_linux-grouper:
152
upstream_linux-grouper: released (4.14~rc5)
153
precise/esm_linux-grouper: DNE
154
trusty_linux-grouper: ignored (abandoned)
155
xenial_linux-grouper: DNE
156
zesty_linux-grouper: DNE
157
artful_linux-grouper: DNE
158
bionic_linux-grouper: DNE
159
devel_linux-grouper: DNE
161
Patches_linux-maguro:
162
upstream_linux-maguro: released (4.14~rc5)
163
precise/esm_linux-maguro: DNE
164
trusty_linux-maguro: ignored (abandoned)
165
xenial_linux-maguro: DNE
166
zesty_linux-maguro: DNE
167
artful_linux-maguro: DNE
168
bionic_linux-maguro: DNE
169
devel_linux-maguro: DNE
172
upstream_linux-mako: released (4.14~rc5)
173
precise/esm_linux-mako: DNE
174
trusty_linux-mako: ignored (abandoned)
175
xenial_linux-mako: ignored (abandoned)
176
zesty_linux-mako: DNE
177
artful_linux-mako: DNE
178
bionic_linux-mako: DNE
179
devel_linux-mako: DNE
182
upstream_linux-manta: released (4.14~rc5)
183
precise/esm_linux-manta: DNE
184
trusty_linux-manta: ignored (abandoned)
185
xenial_linux-manta: DNE
186
zesty_linux-manta: DNE
187
artful_linux-manta: DNE
188
bionic_linux-manta: DNE
189
devel_linux-manta: DNE
192
upstream_linux-flo: released (4.14~rc5)
193
precise/esm_linux-flo: DNE
194
trusty_linux-flo: ignored (abandoned)
195
xenial_linux-flo: ignored (abandoned)
197
artful_linux-flo: DNE
198
bionic_linux-flo: DNE
201
Patches_linux-raspi2:
202
upstream_linux-raspi2: released (4.14~rc5)
203
precise/esm_linux-raspi2: DNE
204
trusty_linux-raspi2: DNE
205
xenial_linux-raspi2: released (4.4.0-1077.85)
206
zesty_linux-raspi2: ignored (reached end-of-life)
207
artful_linux-raspi2: released (4.13.0-1006.6)
208
bionic_linux-raspi2: not-affected (4.13.0-1006.6)
209
devel_linux-raspi2: not-affected (4.15.0-1010.11)
211
Patches_linux-lts-utopic:
212
upstream_linux-lts-utopic: released (4.14~rc5)
213
precise/esm_linux-lts-utopic: DNE
214
trusty_linux-lts-utopic: ignored (end-of-life)
215
xenial_linux-lts-utopic: DNE
216
zesty_linux-lts-utopic: DNE
217
artful_linux-lts-utopic: DNE
218
bionic_linux-lts-utopic: DNE
219
devel_linux-lts-utopic: DNE
221
Patches_linux-lts-vivid:
222
upstream_linux-lts-vivid: released (4.14~rc5)
223
precise/esm_linux-lts-vivid: DNE
224
trusty_linux-lts-vivid: ignored (was needs-triage now end-of-life)
225
xenial_linux-lts-vivid: DNE
226
zesty_linux-lts-vivid: DNE
227
artful_linux-lts-vivid: DNE
228
bionic_linux-lts-vivid: DNE
229
devel_linux-lts-vivid: DNE
231
Patches_linux-lts-wily:
232
upstream_linux-lts-wily: released (4.14~rc5)
233
precise/esm_linux-lts-wily: DNE
234
trusty_linux-lts-wily: ignored (end-of-life)
235
xenial_linux-lts-wily: DNE
236
zesty_linux-lts-wily: DNE
237
artful_linux-lts-wily: DNE
238
bionic_linux-lts-wily: DNE
239
devel_linux-lts-wily: DNE
241
Patches_linux-krillin:
242
product_linux-krillin: ignored (was needed now end-of-life)
244
Patches_linux-vegetahd:
245
product_linux-vegetahd: ignored (was needed now end-of-life)
247
Patches_linux-lts-xenial:
248
upstream_linux-lts-xenial: released (4.14~rc5)
249
precise/esm_linux-lts-xenial: DNE
250
trusty_linux-lts-xenial: released (4.4.0-101.124~14.04.1)
251
xenial_linux-lts-xenial: DNE
252
zesty_linux-lts-xenial: DNE
253
artful_linux-lts-xenial: DNE
254
bionic_linux-lts-xenial: DNE
255
devel_linux-lts-xenial: DNE
257
Patches_linux-snapdragon:
258
upstream_linux-snapdragon: released (4.14~rc5)
259
precise/esm_linux-snapdragon: DNE
260
trusty_linux-snapdragon: DNE
261
xenial_linux-snapdragon: released (4.4.0-1079.84)
262
zesty_linux-snapdragon: released (4.4.0-1079.84)
263
artful_linux-snapdragon: released (4.4.0-1079.84)
264
bionic_linux-snapdragon: DNE
265
devel_linux-snapdragon: DNE
268
upstream_linux-aws: released (4.14~rc5)
269
precise/esm_linux-aws: DNE
270
trusty_linux-aws: released (4.4.0-1003.3)
271
xenial_linux-aws: released (4.4.0-1041.50)
273
artful_linux-aws: DNE
274
bionic_linux-aws: not-affected (4.15.0-1001.1)
275
devel_linux-aws: not-affected (4.15.0-1007.7)
278
upstream_linux-hwe: released (4.14~rc5)
279
precise/esm_linux-hwe: DNE
280
trusty_linux-hwe: DNE
281
xenial_linux-hwe: released (4.13.0-26.29~16.04.2)
283
artful_linux-hwe: DNE
284
bionic_linux-hwe: DNE
287
Patches_linux-hwe-edge:
288
upstream_linux-hwe-edge: released (4.14~rc5)
289
precise/esm_linux-hwe-edge: DNE
290
trusty_linux-hwe-edge: DNE
291
xenial_linux-hwe-edge: released (4.13.0-17.20~16.04.1)
292
zesty_linux-hwe-edge: DNE
293
artful_linux-hwe-edge: DNE
294
bionic_linux-hwe-edge: DNE
295
devel_linux-hwe-edge: DNE
298
upstream_linux-gke: released (4.14~rc5)
299
precise/esm_linux-gke: DNE
300
trusty_linux-gke: DNE
301
xenial_linux-gke: released (4.4.0-1034.34)
303
artful_linux-gke: DNE
304
bionic_linux-gke: DNE
308
upstream_linux-azure: released (4.14~rc5)
309
precise/esm_linux-azure: DNE
310
trusty_linux-azure: DNE
311
xenial_linux-azure: released (4.13.0-1005.7)
312
zesty_linux-azure: DNE
313
artful_linux-azure: DNE
314
bionic_linux-azure: not-affected (4.15.0-1002.2)
315
devel_linux-azure: not-affected (4.15.0-1009.9)
318
upstream_linux-gcp: released (4.14~rc5)
319
precise/esm_linux-gcp: DNE
320
trusty_linux-gcp: DNE
321
xenial_linux-gcp: released (4.13.0-1002.5)
323
artful_linux-gcp: DNE
324
bionic_linux-gcp: not-affected (4.15.0-1001.1)
325
devel_linux-gcp: not-affected (4.15.0-1006.6)
328
upstream_linux-kvm: released (4.14~rc5)
329
precise/esm_linux-kvm: DNE
330
trusty_linux-kvm: DNE
331
xenial_linux-kvm: released (4.4.0-1010.15)
333
artful_linux-kvm: DNE
334
bionic_linux-kvm: not-affected (4.15.0-1002.2)
335
devel_linux-kvm: not-affected (4.15.0-1008.8)
337
Patches_linux-euclid:
338
upstream_linux-euclid: released (4.14~rc5)
339
precise/esm_linux-euclid: DNE
340
trusty_linux-euclid: DNE
341
xenial_linux-euclid: ignored (was needed ESM criteria)
342
zesty_linux-euclid: DNE
343
artful_linux-euclid: DNE
344
bionic_linux-euclid: DNE
345
devel_linux-euclid: DNE
348
upstream_linux-oem: released (4.14~rc5)
349
precise/esm_linux-oem: DNE
350
trusty_linux-oem: DNE
351
xenial_linux-oem: not-affected (4.13.0-1008.9)
353
artful_linux-oem: DNE
354
bionic_linux-oem: not-affected (4.15.0-1002.3)
355
devel_linux-oem: not-affected (4.15.0-1004.5)