From mboxrd@z Thu Jan 1 00:00:00 1970 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: base64 Subject: USB: core: prevent malicious bNumInterfaces overflow From: Alan Stern Message-Id: Date: Wed, 13 Dec 2017 10:30:50 -0500 (EST) To: Greg KH Cc: Peter Chen , Andrey Konovalov , USB list List-ID: T24gV2VkLCAxMyBEZWMgMjAxNywgR3JlZyBLSCB3cm90ZToKCj4gPiA+IC0tLSB1c2ItNC54Lm9y aWcvZHJpdmVycy91c2IvY29yZS9jb25maWcuYwo+ID4gPiArKysgdXNiLTQueC9kcml2ZXJzL3Vz Yi9jb3JlL2NvbmZpZy5jCj4gPiA+IEBAIC01NTUsNiArNTU1LDkgQEAgc3RhdGljIGludCB1c2Jf cGFyc2VfY29uZmlndXJhdGlvbihzdHJ1Ywo+ID4gPiAgCXVuc2lnbmVkIGlhZF9udW0gPSAwOwo+ ID4gPiAgCj4gPiA+ICAJbWVtY3B5KCZjb25maWctPmRlc2MsIGJ1ZmZlciwgVVNCX0RUX0NPTkZJ R19TSVpFKTsKPiA+ID4gKwluaW50ZiA9IG5pbnRmX29yaWcgPSBjb25maWctPmRlc2MuYk51bUlu dGVyZmFjZXM7Cj4gPiA+ICsJY29uZmlnLT5kZXNjLmJOdW1JbnRlcmZhY2VzID0gMDsJLy8gQWRq dXN0ZWQgbGF0ZXIKPiA+ID4gKwo+ID4gCj4gPiBUaGUgY29tbWVudCBmb3JtYXQ/Cj4gCj4gSXMg ZmluZSwgSSd2ZSBnaXZlbiB1cCB0aGF0IGZpZ2h0IDopCgpJbiBmYWN0LCBMaW51cyBwb3N0ZWQg YW4gZW1haWwgc29tZXRpbWUgaW4gdGhlIGxhc3QgZmV3IHdlZWtzLCBpbiB3aGljaCAKaGUgc2Fp ZCB0aGF0IGhlIGhhZCBjaGFuZ2VkIGhpcyBtaW5kIGFib3V0IC8vIGNvbW1lbnRzLiAgSGUgY2Fs bGVkIGl0IAp0aGUgb25lIHRoaW5nIHRoYXQgQysrIGdvdCByaWdodCEKCkFsc28sIGNoZWNrcGF0 Y2ggZGlkbid0IGNvbXBsYWluLgoKQWxhbiBTdGVybgotLS0KVG8gdW5zdWJzY3JpYmUgZnJvbSB0 aGlzIGxpc3Q6IHNlbmQgdGhlIGxpbmUgInVuc3Vic2NyaWJlIGxpbnV4LXVzYiIgaW4KdGhlIGJv ZHkgb2YgYSBtZXNzYWdlIHRvIG1ham9yZG9tb0B2Z2VyLmtlcm5lbC5vcmcKTW9yZSBtYWpvcmRv bW8gaW5mbyBhdCAgaHR0cDovL3ZnZXIua2VybmVsLm9yZy9tYWpvcmRvbW8taW5mby5odG1sCg==