The sndusbcreate_streams function in sound/usb/card.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
[
{
"id": "CVE-2017-16529-2bf5d41c",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"220982789483290404778059204536114188788",
"198317206544289284443498426735081607501",
"284792344418232050230930098463768351767",
"248050777233280024569261286344191732168",
"10920698455643497829074428513312117531",
"171142058956577505352139113207016979415",
"32170849019962192145459161040590757726",
"217594722847537583526353343659746345069",
"47815063334007956962233190586532116801",
"32102770115113235885553927703676757051",
"324834311403456386365568098859016684939",
"100030649422175164247910254391471887355",
"69832543674836719066991961366904248439",
"335762530707384523204942818486494193215"
]
},
"deprecated": false,
"source": "https://github.com/torvalds/linux/commit/bfc81a8bc18e3c4ba0cbaa7666ff76be2f998991",
"signature_type": "Line",
"target": {
"file": "sound/usb/card.c"
}
},
{
"id": "CVE-2017-16529-2d290d99",
"signature_version": "v1",
"digest": {
"function_hash": "60627407968727646242675436647393872143",
"length": 1591.0
},
"deprecated": false,
"source": "https://github.com/torvalds/linux/commit/bfc81a8bc18e3c4ba0cbaa7666ff76be2f998991",
"signature_type": "Function",
"target": {
"file": "sound/usb/card.c",
"function": "snd_usb_create_streams"
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-16529.json"