Medium severity6.6NVD Advisory· Published Nov 7, 2017· Updated May 13, 2026
CVE-2017-16649
CVE-2017-16649
Description
The usbnet_generic_cdc_bind function in drivers/net/usb/cdc_ether.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (divide-by-zero error and system crash) or possibly have unspecified other impact via a crafted USB device.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- www.securityfocus.com/bid/101761nvdThird Party AdvisoryVDB Entry
- groups.google.com/d/msg/syzkaller/0e0gmaX9R0g/9Me9JcY2BQAJnvdMailing ListThird Party Advisory
- patchwork.ozlabs.org/patch/834771/nvdMailing ListThird Party Advisory
- lists.debian.org/debian-lts-announce/2017/12/msg00004.htmlnvd
- usn.ubuntu.com/3617-1/nvd
- usn.ubuntu.com/3617-2/nvd
- usn.ubuntu.com/3617-3/nvd
- usn.ubuntu.com/3619-1/nvd
- usn.ubuntu.com/3619-2/nvd
- usn.ubuntu.com/3822-1/nvd
- usn.ubuntu.com/3822-2/nvd
News mentions
0No linked articles in our index yet.