CVE-2022-25258
MEDIUMLinux Kernel < 5.16.10 - Memory Corruption via USB Gadget Interface OS Descriptor Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2022-25258. PoCs published by szymonh.
AI-analyzed exploit summary This PoC exploits a null pointer dereference and out-of-bounds array access in the Linux USB Gadget Subsystem's OS descriptor handling. It sends maliciously crafted control transfer requests to crash the device.
Description
An issue was discovered in drivers/usb/gadget/composite.c in the Linux kernel before 5.16.10. The USB Gadget subsystem lacks certain validation of interface OS descriptor requests (ones with a large array index and ones associated with NULL function pointer retrieval). Memory corruption might occur.
Exploits (1)
This PoC exploits a null pointer dereference and out-of-bounds array access in the Linux USB Gadget Subsystem's OS descriptor handling. It sends maliciously crafted control transfer requests to crash the device.
References (9)
Scores
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H