A flaw was found in the USB Host Controller Driver framework in the Linux kernel. The usb_giveback_urb function has a logic loophole in its implementation. Due to the inappropriate judgment condition of the goto statement, the function cannot return under the input of a specific malformed descriptor file, so it falls into an endless loop, resulting in a denial of service.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2023-07-31T16:22:24.371Z

Updated: 2024-09-23T22:25:46.234Z

Reserved: 2023-07-31T08:37:42.318Z

Link: CVE-2023-4010

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-07-31T17:15:10.277

Modified: 2023-11-07T04:22:02.797

Link: CVE-2023-4010

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-07-13T00:00:00Z

Links: CVE-2023-4010 - Bugzilla