{"id":"CVE-2017-7273","details":"The cp_report_fixup function in drivers/hid/hid-cypress.c in the Linux kernel 3.2 and 4.x before 4.9.4 allows physically proximate attackers to cause a denial of service (integer underflow) or possibly have unspecified other impact via a crafted HID report.","modified":"2026-03-12T22:42:08.977429Z","published":"2017-03-27T17:59:01.007Z","related":["SUSE-SU-2018:3746-1","SUSE-SU-2018:3869-1","SUSE-SU-2019:1289-1","SUSE-SU-2019:13937-1"],"references":[{"type":"WEB","url":"http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=4faec4a2ef5dd481682cc155cb9ea14ba2534b76"},{"type":"ADVISORY","url":"http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.4"},{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/97190"},{"type":"FIX","url":"http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=1ebb71143758f45dc0fa76e2f48429e13b16d110"},{"type":"FIX","url":"https://github.com/torvalds/linux/commit/1ebb71143758f45dc0fa76e2f48429e13b16d110"}],"affected":[{"database_specific":{"unresolved_ranges":[{"events":[{"introduced":"0"},{"last_affected":"4.0"}]},{"events":[{"introduced":"0"},{"last_affected":"4.0.0"}]},{"events":[{"introduced":"0"},{"last_affected":"4.0.2"}]},{"events":[{"introduced":"0"},{"last_affected":"4.0.3"}]},{"events":[{"introduced":"0"},{"last_affected":"4.0.4"}]},{"events":[{"introduced":"0"},{"last_affected":"4.0.5"}]},{"events":[{"introduced":"0"},{"last_affected":"4.0.6"}]},{"events":[{"introduced":"0"},{"last_affected":"4.0.7"}]},{"events":[{"introduced":"0"},{"last_affected":"4.0.8"}]},{"events":[{"introduced":"0"},{"last_affected":"4.0.9"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.0"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.2"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.3"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.4"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.5"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.6"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.7"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.8"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.9"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.10"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.11"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.12"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.13"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.14"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.15"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.16"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.17"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.18"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.19"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.20"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.21"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.22"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.23"}]},{"events":[{"introduced":"0"},{"last_affected":"4.1.33"}]},{"events":[{"introduced":"0"},{"last_affected":"4.2.0"}]},{"events":[{"introduced":"0"},{"last_affected":"4.2.1"}]},{"events":[{"introduced":"0"},{"last_affected":"4.2.2"}]},{"events":[{"introduced":"0"},{"last_affected":"4.2.3"}]},{"events":[{"introduced":"0"},{"last_affected":"4.2.4"}]},{"events":[{"introduced":"0"},{"last_affected":"4.2.5"}]},{"events":[{"introduced":"0"},{"last_affected":"4.2.7"}]},{"events":[{"introduced":"0"},{"last_affected":"4.2.8"}]},{"events":[{"introduced":"0"},{"last_affected":"4.3-rc7"}]},{"events":[{"introduced":"0"},{"last_affected":"4.3.0"}]},{"events":[{"introduced":"0"},{"last_affected":"4.3.1"}]},{"events":[{"introduced":"0"},{"last_affected":"4.3.2"}]},{"events":[{"introduced":"0"},{"last_affected":"4.3.3"}]},{"events":[{"introduced":"0"},{"last_affected":"4.3.5"}]},{"events":[{"introduced":"0"},{"last_affected":"4.3.6"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4-rc8"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.0"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.1"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.2"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.3"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.4"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.5"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.6"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.7"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.8"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.9"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.22"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.23"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.24"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.25"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.26"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.27"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.28"}]},{"events":[{"introduced":"0"},{"last_affected":"4.4.32"}]},{"events":[{"introduced":"0"},{"last_affected":"4.5.0"}]},{"events":[{"introduced":"0"},{"last_affected":"4.5.0-rc7"}]},{"events":[{"introduced":"0"},{"last_affected":"4.5.1"}]},{"events":[{"introduced":"0"},{"last_affected":"4.5.2"}]},{"events":[{"introduced":"0"},{"last_affected":"4.5.3"}]},{"events":[{"introduced":"0"},{"last_affected":"4.5.4"}]},{"events":[{"introduced":"0"},{"last_affected":"4.5.5"}]},{"events":[{"introduced":"0"},{"last_affected":"4.5.7"}]},{"events":[{"introduced":"0"},{"last_affected":"4.6"}]},{"events":[{"introduced":"0"},{"last_affected":"4.6.2"}]},{"events":[{"introduced":"0"},{"last_affected":"4.6.3"}]},{"events":[{"introduced":"0"},{"last_affected":"4.6.4"}]},{"events":[{"introduced":"0"},{"last_affected":"4.6.5"}]},{"events":[{"introduced":"0"},{"last_affected":"4.6.6"}]},{"events":[{"introduced":"0"},{"last_affected":"4.6.7"}]},{"events":[{"introduced":"0"},{"last_affected":"4.7"}]},{"events":[{"introduced":"0"},{"last_affected":"4.7-rc6"}]},{"events":[{"introduced":"0"},{"last_affected":"4.7.4"}]},{"events":[{"introduced":"0"},{"last_affected":"4.7.6"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.1"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.2"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.3"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.4"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.5"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.6"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.7"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.8"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.9"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.10"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.11"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.12"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.14"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.16"}]},{"events":[{"introduced":"0"},{"last_affected":"4.8.17"}]},{"events":[{"introduced":"0"},{"last_affected":"4.9.1"}]},{"events":[{"introduced":"0"},{"last_affected":"4.9.2"}]},{"events":[{"introduced":"0"},{"last_affected":"4.9.3"}]},{"events":[{"introduced":"0"},{"last_affected":"4.10"}]},{"events":[{"introduced":"0"},{"last_affected":"4.10.1"}]},{"events":[{"introduced":"0"},{"last_affected":"4.10.2"}]},{"events":[{"introduced":"0"},{"last_affected":"4.10.4"}]}],"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-7273.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}