CVE-2022-27223

high

Description

In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access.

References

https://github.com/torvalds/linux/commit/7f14c7227f342d9932f9b918893c8814f86d2a0d

https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.16.12

https://security.netapp.com/advisory/ntap-20220419-0001/

https://lists.debian.org/debian-lts-announce/2022/07/msg00000.html

Details

Source: MITRE

Published: 2022-03-16

Updated: 2022-07-01

Type: CWE-129

Risk Information

CVSS v2

Base Score: 6.5

Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 8

Severity: MEDIUM

CVSS v3

Base Score: 8.8

Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 2.8

Severity: HIGH