CVE-2017-18551Out-of-bounds Write in Kernel

Severity
6.7MEDIUMNVD
EPSS
0.1%
top 67.27%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 19
Latest updateMay 24

Description

An issue was discovered in drivers/i2c/i2c-core-smbus.c in the Linux kernel before 4.14.15. There is an out of bounds write in the function i2c_smbus_xfer_emulated.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:HExploitability: 0.8 | Impact: 5.9

Affected Packages4 packages

NVDlinux/linux_kernel< 4.14.15
Debianlinux/linux_kernel< 4.14.17-1+3
debiandebian/linux< linux 4.14.17-1 (bookworm)
NVDopensuse/leap15.0, 15.1+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-8w7h-gmqf-263p: An issue was discovered in drivers/i2c/i2c-core-smbus2022-05-24
OSV
CVE-2017-18551: An issue was discovered in drivers/i2c/i2c-core-smbus2019-08-19

📋Vendor Advisories

2
Red Hat
kernel: out of bounds write in function i2c_smbus_xfer_emulated in drivers/i2c/i2c-core-smbus.c2019-08-18
Debian
CVE-2017-18551: linux - An issue was discovered in drivers/i2c/i2c-core-smbus.c in the Linux kernel befo...2017

💬Community

2
Bugzilla
CVE-2017-18551 kernel: out of bounds write in function i2c_smbus_xfer_emulated in drivers/i2c/i2c-core-smbus.c2019-10-01
Bugzilla
CVE-2017-18551 kernel: out of bounds write in function i2c_smbus_xfer_emulated in drivers/i2c/i2c-core-smbus.c [fedora-all]2019-10-01