CVE-2017-16529

Updated: 2023-12-06

CWE: Out-of-bounds Read

Description:

The snd_usb_create_streams function in sound/usb/card.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.

CVSS3: 6.6


Vendor State

OS Vendor version Errata
Ubuntu 16.04 4.4.0-101.124 USN-3485-1
Ubuntu 16.04 AWS 4.4.0-1041.50 USN-3485-1
Ubuntu 14.04 HWE 4.4.0-101.124~14.04.1 USN-3485-2
Oracle Linux 6 UEK 3 3.8.13-118.20.3.el6uek ELSA-2018-4040
Oracle Linux 6 UEK 4 4.1.12-112.14.2.el6uek ELSA-2018-4001
Oracle Linux 7 UEK 3 3.8.13-118.20.3.el7uek ELSA-2018-4040
Oracle Linux 7 UEK 4 4.1.12-112.14.2.el7uek ELSA-2018-4001
Ubuntu 16.04 (FIPS) 4.4.0-101.124 usn-3485-1

KernelCare State

OS Original kernel version State
Ubuntu 16.04
4.4.0-83.106 show all hide all
4.4.0-98.121 4.4.0-72.93 4.4.0-79.100 4.4.0-96.119 4.4.0-64.85 4.4.0-34.53 4.4.0-22.40 4.4.0-78.99 4.4.0-91.114 4.4.0-62.83 4.4.0-31.50 4.4.0-97.120 4.4.0-28.47 4.4.0-89.112 4.4.0-63.84 4.4.0-47.68 4.4.0-24.43 4.4.0-38.57 4.4.0-67.88 4.4.0-81.104 4.4.0-22.39 4.4.0-93.116 4.4.0-42.62 4.4.0-75.96 4.4.0-51.72 4.4.0-87.110 4.4.0-53.74 4.4.0-36.55 4.4.0-21.37 4.4.0-23.41 4.4.0-43.63 4.4.0-65.86 4.4.0-70.91 4.4.0-77.98 4.4.0-92.115 4.4.0-66.87 4.4.0-45.66 4.4.0-71.92 4.4.0-57.78 4.4.0-59.80
Released
Ubuntu 16.04 AWS
4.4.0-1020.29 show all hide all
4.4.0-1039.48 4.4.0-1035.44 4.4.0-1026.35 4.4.0-1012.21 4.4.0-1017.26 4.4.0-1016.25 4.4.0-1013.22 4.4.0-1030.39 4.4.0-1038.47 4.4.0-1028.37 4.4.0-1022.31 4.4.0-1031.40 4.4.0-1037.46 4.4.0-1032.41 4.4.0-1018.27
Released
Ubuntu 14.04 HWE
4.4.0-91.114~14.04.1 show all hide all
4.4.0-71.92~14.04.1 4.4.0-97.120~14.04.1 4.4.0-34.53~14.04.1 4.4.0-79.100~14.04.1 4.4.0-51.72~14.04.1 4.4.0-96.119~14.04.1 4.4.0-63.84~14.04.2 4.4.0-81.104~14.04.1 4.4.0-89.112~14.04.1 4.4.0-98.121~14.04.1 4.4.0-66.87~14.04.1 4.4.0-53.74~14.04.1 4.4.0-28.47~14.04.1 4.4.0-57.78~14.04.1 4.4.0-78.99~14.04.2 4.4.0-62.83~14.04.1 4.4.0-64.85~14.04.1 4.4.0-24.43~14.04.1 4.4.0-93.116~14.04.1 4.4.0-47.68~14.04.1 4.4.0-83.106~14.04.1 4.4.0-31.50~14.04.1 4.4.0-42.62~14.04.1 4.4.0-38.57~14.04.1 4.4.0-72.93~14.04.1 4.4.0-22.40~14.04.1 4.4.0-21.37~14.04.1 4.4.0-23.41~14.04.1 4.4.0-70.91~14.04.1 4.4.0-92.115~14.04.1 4.4.0-65.86~14.04.1 4.4.0-87.110~14.04.1 4.4.0-75.96~14.04.1 4.4.0-36.55~14.04.1 4.4.0-59.80~14.04.1 4.4.0-67.88~14.04.1 4.4.0-45.66~14.04.1 4.4.0-22.39~14.04.1
Released
Debian 9
4.9.30-2+deb9u1 show all hide all
4.9.51-1 4.9.30-2+deb9u5 4.9.30-2+deb9u4 4.9.30-2+deb9u3 4.9.30-2+deb9u2 4.9.30-2
Released
Debian 8
3.16.7-ckt9-3~deb8u1 show all hide all
3.16.39-1+deb8u2 3.16.7-ckt11-1+deb8u2 3.16.7-ckt20-1+deb8u2 3.16.7-ckt11-1+deb8u3 3.16.43-2+deb8u4 3.16.7-ckt20-1+deb8u4 3.16.7-ckt25-2+deb8u2 3.16.36-1+deb8u2 3.16.43-2+deb8u3 3.16.7-ckt25-1 3.16.7-ckt11-1+deb8u4 3.16.7-ckt25-2 3.16.7-ckt11-1+deb8u5 3.16.7-ckt20-1+deb8u3 3.16.39-1 3.16.43-2+deb8u1 3.16.7-ckt11-1+deb8u6 3.16.43-2+deb8u2 3.16.43-2 3.16.7-ckt11-1+deb8u1 3.16.7-ckt25-2+deb8u1 3.16.39-1+deb8u1 3.16.7-ckt25-2+deb8u3 3.16.43-2+deb8u5 3.16.7-ckt11-1 3.16.36-1+deb8u1 3.16.7-ckt20-1+deb8u1
Released
Debian 8 backports
4.9.30-2+deb9u2~bpo8+1 show all hide all
4.9.30-2+deb9u5~bpo8+1 4.9.30-2~bpo8+1 4.9.51-1~bpo8+1
Released
Oracle Linux 6 UEK 3
3.8.13-118.13.2.el6uek show all hide all
3.8.13-118.6.1.el6uek 3.8.13-118.10.2.el6uek 3.8.13-118.3.2.el6uek 3.8.13-118.15.1.el6uek 3.8.13-118.18.4.el6uek 3.8.13-118.19.4.el6uek 3.8.13-118.16.2.el6uek 3.8.13-118.4.2.el6uek 3.8.13-118.19.3.el6uek 3.8.13-118.17.4.el6uek 3.8.13-118.2.4.el6uek 3.8.13-118.19.2.el6uek 3.8.13-118.9.1.el6uek 3.8.13-118.20.1.el6uek 3.8.13-118.2.1.el6uek 3.8.13-118.14.2.el6uek 3.8.13-118.17.5.el6uek 3.8.13-118.18.3.el6uek 3.8.13-118.20.2.el6uek 3.8.13-118.2.5.el6uek 3.8.13-118.11.2.el6uek 3.8.13-118.7.1.el6uek 3.8.13-118.19.12.el6uek 3.8.13-118.16.3.el6uek 3.8.13-118.3.1.el6uek 3.8.13-118.4.1.el6uek 3.8.13-118.14.1.el6uek 3.8.13-118.8.1.el6uek 3.8.13-118.15.2.el6uek 3.8.13-118.19.7.el6uek 3.8.13-118.13.3.el6uek 3.8.13-118.16.4.el6uek 3.8.13-118.18.2.el6uek 3.8.13-118.6.2.el6uek 3.8.13-118.19.10.el6uek 3.8.13-118.9.2.el6uek 3.8.13-118.2.2.el6uek
Released
Oracle Linux 6 UEK 4
4.1.12-94.3.5.el6uek show all hide all
4.1.12-103.9.4.el6uek 4.1.12-61.47.1.el6uek
Released
Oracle Linux 7 UEK 3
3.8.13-118.10.2.el7uek show all hide all
3.8.13-118.19.12.el7uek 3.8.13-118.2.4.el7uek 3.8.13-118.15.1.el7uek 3.8.13-118.19.7.el7uek 3.8.13-118.17.5.el7uek 3.8.13-118.20.2.el7uek 3.8.13-118.14.2.el7uek 3.8.13-118.19.2.el7uek 3.8.13-118.9.2.el7uek 3.8.13-118.16.2.el7uek 3.8.13-118.3.2.el7uek 3.8.13-118.9.1.el7uek 3.8.13-118.18.3.el7uek 3.8.13-118.7.1.el7uek 3.8.13-118.18.2.el7uek 3.8.13-118.4.2.el7uek 3.8.13-118.18.4.el7uek 3.8.13-118.6.1.el7uek 3.8.13-118.20.1.el7uek 3.8.13-118.19.3.el7uek 3.8.13-118.15.3.el7uek 3.8.13-118.4.1.el7uek 3.8.13-118.8.1.el7uek 3.8.13-118.14.1.el7uek 3.8.13-118.3.1.el7uek 3.8.13-118.16.4.el7uek 3.8.13-118.19.4.el7uek 3.8.13-118.15.2.el7uek 3.8.13-118.6.2.el7uek 3.8.13-118.11.2.el7uek 3.8.13-118.17.4.el7uek 3.8.13-118.2.2.el7uek 3.8.13-118.13.2.el7uek 3.8.13-118.16.3.el7uek 3.8.13-118.19.10.el7uek 3.8.13-118.2.1.el7uek 3.8.13-118.13.3.el7uek 3.8.13-118.2.5.el7uek
Released
Oracle Linux 7 UEK 4
4.1.12-103.9.4.el7uek show all hide all
4.1.12-94.3.5.el7uek
Released
Endurance 6 elrepo
Ready For Release
Debian 10 cloud
Will Not Fix
Debian 9 backports
Will Not Fix
Ubuntu 16.04 (FIPS)
4.4.0-1002.2
Released