In the Linux kernel, the following vulnerability has been resolved: NFC: nci: Add bounds checking in nci_hci_create_pipe() The "pipe" variable is a u8 which comes from the network. If it's more than 127, then it results in memory corruption in the caller, nci_hci_connect_gate().
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | 15.3(3)M2 |
| Linux | Linux | 15.3(3)M3 |
| Linux | Linux | 7 for 32-bit Systems Service Pack 1 |
| Linux | Linux | 10 Version 1803 for ARM64-based Systems |