Bug 1437435 (CVE-2017-7273)

Summary: CVE-2017-7273 kernel: HID: integer underflow in cp_report_fixup() (drivers/hid/hid-cypress.c)
Product: [Other] Security Response Reporter: Martin Prpič <mprpic>
Component: vulnerabilityAssignee: Red Hat Product Security <security-response-team>
Status: CLOSED ERRATA QA Contact:
Severity: low Docs Contact:
Priority: low    
Version: unspecifiedCC: aquini, bhu, dhoward, fhrbata, gansalmon, hwkernel-mgr, iboverma, ichavero, itamar, jforbes, jkacur, jonathan, jross, jwboyer, kernel-maint, kernel-mgr, lgoncalv, madhu.chinakonda, mchehab, mcressma, nmurray, pholasek, rt-maint, rvrbovsk, slawomir, vdronov, williams, yozone
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
An integer underflow flaw was found in the way the Linux kernel handles crafted Cypress HID (Human Interface Device) reports. An attacker with physical access to the system could use this flaw to crash the system and cause a denial of service (DoS).
Story Points: ---
Clone Of: Environment:
Last Closed: 2021-10-27 10:52:14 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 1698228, 1698229    
Bug Blocks: 1697539    

Description Martin Prpič 2017-03-30 10:23:22 UTC
An integer underflow flaw was found in the way the Linux kernel handled crafted Cypress HID (Human Interface Device) reports. An attacker with physical access to the system could use this flaw to crash the system and thus cause a denial of service (DoS).

An upstream patch:

https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=1ebb71143758f45dc0fa76e2f48429e13b16d110