Related Vulnerabilities: CVE-2017-16644  

The hdpvr_probe function in drivers/media/usb/hdpvr/hdpvr-core.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (improper error handling and system crash) or possibly have unspecified other impact via a crafted USB device.

Severity Medium

Remote No

Type Denial of service

Description

The hdpvr_probe function in drivers/media/usb/hdpvr/hdpvr-core.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (improper error handling and system crash) or possibly have unspecified other impact via a crafted USB device.

AVG-573 linux-hardened 4.14.11-1 Medium Vulnerable

AVG-572 linux-zen 4.14.11-1 High Vulnerable

AVG-566 linux-lts 4.9.74-1 High Vulnerable

AVG-567 linux 4.14.11-1 4.16-1 High Fixed

https://groups.google.com/forum/#!topic/syzkaller/ngC5SLvxPm4
https://patchwork.kernel.org/patch/9966135/
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=c0f71bbb810237a38734607ca4599632f7f5d47f

Fixed in 4.16