Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability has been addressed in the Linux kernel's HID core, specifically related to the hid_hw_raw_request function. The issue arose because the function was called directly in a low-level transport driver, bypassing important checks on the validity of the buffer and length. This omission allowed invalid parameters to be used, potentially leading to undesirable behavior or exploitation.
By bypassing parameter validation, the vulnerability could allow for the use of invalid data in the HID request process, which might be exploited to cause unexpected behavior or errors in the system.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.