diff options
| author | Kees Cook <keescook@chromium.org> | 2013-08-28 22:31:44 +0200 |
|---|---|---|
| committer | Greg Kroah-Hartman <gregkh@linuxfoundation.org> | 2013-09-26 17:18:16 -0700 |
| commit | a3957df756ccf3a46c24c8e2d4f8b26c932357b3 (patch) | |
| tree | 68d32899f4adbbfb225ad490ab4aa3d2c41c5b77 /include/linux | |
| parent | 469e7f80f25f79a4c11bed47027da81fcf30d045 (diff) | |
HID: sensor-hub: validate feature report details
commit 9e8910257397372633e74b333ef891f20c800ee4 upstream.
A HID device could send a malicious feature report that would cause the
sensor-hub HID driver to read past the end of heap allocation, leaking
kernel memory contents to the caller.
CVE-2013-2898
Signed-off-by: Kees Cook <keescook@chromium.org>
Reviewed-by: Mika Westerberg <mika.westerberg@linux.intel.com>
Signed-off-by: Jiri Kosina <jkosina@suse.cz>
Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
Diffstat (limited to 'include/linux')
0 files changed, 0 insertions, 0 deletions
