In the Linux kernel, the following vulnerability has been resolved: Input: synaptics-rmi4 - bound the F3A keymap to the GPIO count rmi_f3a_initialize() takes the GPIO count from the device query re…
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: Input: synaptics-rmi4 - bound the F3A keymap to the GPIO count rmi_f3a_initialize() takes the GPIO count from the device query register (f3a->gpio_count = buf & RMI_F3A_GPIO_COUNT, range 0..127). rmi_f3a_map_gpios() then allocates gpio_key_map with min(gpio_count, TRACKSTICK_RANGE_END) == at most 6 entries, but rmi_f3a_attention() iterates the full gpio_count and dereferences gpio_key_map[i], and input->keycodemax is set to t…
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/3480e24bc4e178aaa009edb25b6ee12df199e210 Patch
- https://git.kernel.org/stable/c/35ed74d32d8260bdfb14a94caf402bf0866bdeec Patch
- https://git.kernel.org/stable/c/502ad7caaa1a445b734c827fa256e5311df67e3d Patch
- https://git.kernel.org/stable/c/57c10915f2c16c90e0d46ad00876bf39ece40fc2 Patch
- https://git.kernel.org/stable/c/64fb0e1161ccc6b9e48b8df61f07d3c34c01ec42 Patch
- https://git.kernel.org/stable/c/850117b637bcb1dcc14be0cf09ac819a8707b42c Patch
- https://git.kernel.org/stable/c/8db211aed83733073b0814adaeeab61d4521474e Patch
- https://git.kernel.org/stable/c/ba57f430328534501962d60d651e385ffd7af9ca Patch
Timeline
- nvd_ingest NVD