summaryrefslogtreecommitdiffstats
path: root/drivers/hid/hid-elo.c
diff options
context:
space:
mode:
authorKees Cook2013-08-28 22:31:52 +0200
committerJiri Kosina2013-09-04 12:03:27 +0200
commit1e87a2456b0227ca4ab881e19a11bb99d164e792 (patch)
treeecd0c6e1e42cfd620b7767a807471632a75c95cb /drivers/hid/hid-elo.c
parentHID: sensor-hub: validate feature report details (diff)
downloadkernel-qcow2-linux-1e87a2456b0227ca4ab881e19a11bb99d164e792.tar.gz
kernel-qcow2-linux-1e87a2456b0227ca4ab881e19a11bb99d164e792.tar.xz
kernel-qcow2-linux-1e87a2456b0227ca4ab881e19a11bb99d164e792.zip
HID: picolcd_core: validate output report details
A HID device could send a malicious output report that would cause the picolcd HID driver to trigger a NULL dereference during attr file writing. [jkosina@suse.cz: changed report->maxfield < 1 to report->maxfield != 1 as suggested by Bruno]. CVE-2013-2899 Signed-off-by: Kees Cook <keescook@chromium.org> Cc: stable@kernel.org Reviewed-by: Bruno Prémont <bonbons@linux-vserver.org> Acked-by: Bruno Prémont <bonbons@linux-vserver.org> Signed-off-by: Jiri Kosina <jkosina@suse.cz>
Diffstat (limited to 'drivers/hid/hid-elo.c')
0 files changed, 0 insertions, 0 deletions