oss-sec mailing list archives

CVE-2017-12762: buffer overflow in ISDN linux driver


From: Annie Cherkaev <annie.cherk () gmail com>
Date: Thu, 10 Aug 2017 09:24:16 -0600

Description:
In /drivers/isdn/i4l/isdn_net.c: A user-controlled buffer is copied into a
local buffer of constant size using strcpy without a length check which can
cause a buffer overflow. Patched in the Linux kernel 4.9-stable tree,
4.12-stable tree, 3.18-stable tree, and 4.4-stable tree.

Reference:
https://patchwork.kernel.org/patch/9880041/

Current thread: