An issue was discovered in the Linux kernel before 5.16...
Moderate severity
Unreviewed
Published
Feb 17, 2022
to the GitHub Advisory Database
•
Updated Jan 30, 2023
Description
Published by the National Vulnerability Database
Feb 16, 2022
Published to the GitHub Advisory Database
Feb 17, 2022
Last updated
Jan 30, 2023
An issue was discovered in the Linux kernel before 5.16.10. The USB Gadget subsystem lacks certain validation of interface OS descriptor requests (ones with a large array index and ones associated with NULL function pointer retrieval). Memory corruption might occur.
References