** Description changed:
- Linux kernel hid-logitech-dj.c logi_dj_ll_raw_request heap overflow
+ Heap-based buffer overflow in the logi_dj_ll_raw_request function in
+ drivers/hid/hid-logitech-dj.c in the Linux kernel before 3.16.2 allows
+ physically proximate attackers to cause a denial of service (system crash)
+ or possibly execute arbitrary code via a crafted device that specifies a
+ large report size for an LED report.
Break-Fix: 0e40d35637d68f654b66f4562c9a914be7d06bd1
51217e69697fba92a06e07e16f55c9a52d8e8945
** Changed in: linux-lts-saucy (Ubuntu Precise)
Status: New => Invalid
** Changed in: linux (Ubuntu Trusty)
Status: New => Invalid
** Changed in: linux-lts-quantal (Ubuntu Precise)
Status: New => Invalid
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1370031
Title:
CVE-2014-3183
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1370031/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs