Beveiligingsadvies

CVE-2016-20022

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-06-27 00:00:00
Laatst bijgewerkt 2025-03-13 17:18:45
Toegewezen door mitre
CVSS-score 8.4
Status PUBLISHED

Beschrijving

In the Linux kernel before 4.8, usb_parse_endpoint in drivers/usb/core/config.c does not validate the wMaxPacketSize field of an endpoint descriptor. NOTE: This vulnerability only affects products that are no longer supported by the supplier.