In the Linux kernel, the following vulnerability has been resolved: NFC: nci: Add bounds checking in nci_hci_create_pipe() The "pipe" variable is a u8 which comes from the network. If it's more than 127, then it results in memory corruption in the caller, nci_hci_connect_gate().
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | SA8195P |
| Linux | Linux | 9.15.1.16 |
| Linux | Linux | 7.2.0.1 |