CVE-2017-7273

medium
Published 2017-03-27 ยท Modified 2026-05-13
CVSS v3
6.6
CVSS:3.0/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
6.6

Description

The cp_report_fixup function in drivers/hid/hid-cypress.c in the Linux kernel 3.2 and 4.x before 4.9.4 allows physically proximate attackers to cause a denial of service (integer underflow) or possibly have unspecified other impact via a crafted HID report.

Predictions

Exploit likelihood
65%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

OS impact

linux Linux kernel Affected 108 releases
VersionStatusFixed in
4.9.3 Affected โ€”
4.9.2 Affected โ€”
4.9.1 Affected โ€”
4.8.17 Affected โ€”
4.8.16 Affected โ€”
4.8.14 Affected โ€”
4.8.12 Affected โ€”
4.8.11 Affected โ€”
4.8.10 Affected โ€”
4.8.9 Affected โ€”
4.8.8 Affected โ€”
4.8.7 Affected โ€”
4.8.6 Affected โ€”
4.8.5 Affected โ€”
4.8.4 Affected โ€”
4.8.3 Affected โ€”
4.8.2 Affected โ€”
4.8.1 Affected โ€”
4.8 Affected โ€”
4.7.6 Affected โ€”
4.7.4 Affected โ€”
4.7 Affected โ€”
4.6.7 Affected โ€”
4.6.6 Affected โ€”
4.6.5 Affected โ€”
4.6.4 Affected โ€”
4.6.3 Affected โ€”
4.6.2 Affected โ€”
4.6 Affected โ€”
4.5.7 Affected โ€”
4.5.5 Affected โ€”
4.5.4 Affected โ€”
4.5.3 Affected โ€”
4.5.2 Affected โ€”
4.5.1 Affected โ€”
4.5.0 Affected โ€”
4.4.32 Affected โ€”
4.4.28 Affected โ€”
4.4.27 Affected โ€”
4.4.26 Affected โ€”
4.4.25 Affected โ€”
4.4.24 Affected โ€”
4.4.23 Affected โ€”
4.4.22 Affected โ€”
4.4.9 Affected โ€”
4.4.8 Affected โ€”
4.4.7 Affected โ€”
4.4.6 Affected โ€”
4.4.5 Affected โ€”
4.4.4 Affected โ€”
4.4.3 Affected โ€”
4.4.2 Affected โ€”
4.4.1 Affected โ€”
4.4.0 Affected โ€”
4.4 Affected โ€”
4.3.6 Affected โ€”
4.3.5 Affected โ€”
4.3.3 Affected โ€”
4.3.2 Affected โ€”
4.3.1 Affected โ€”
4.3.0 Affected โ€”
4.3 Affected โ€”
4.2.8 Affected โ€”
4.2.7 Affected โ€”
4.2.5 Affected โ€”
4.2.4 Affected โ€”
4.2.3 Affected โ€”
4.2.2 Affected โ€”
4.2.1 Affected โ€”
4.2.0 Affected โ€”
4.10.4 Affected โ€”
4.10.2 Affected โ€”
4.10.1 Affected โ€”
4.10 Affected โ€”
4.1.33 Affected โ€”
4.1.23 Affected โ€”
4.1.22 Affected โ€”
4.1.21 Affected โ€”
4.1.20 Affected โ€”
4.1.19 Affected โ€”
4.1.18 Affected โ€”
4.1.17 Affected โ€”
4.1.16 Affected โ€”
4.1.15 Affected โ€”
4.1.14 Affected โ€”
4.1.13 Affected โ€”
4.1.12 Affected โ€”
4.1.11 Affected โ€”
4.1.10 Affected โ€”
4.1.9 Affected โ€”
4.1.8 Affected โ€”
4.1.7 Affected โ€”
4.1.6 Affected โ€”
4.1.5 Affected โ€”
4.1.4 Affected โ€”
4.1.3 Affected โ€”
4.1.2 Affected โ€”
4.1.0 Affected โ€”
4.0.9 Affected โ€”
4.0.8 Affected โ€”
4.0.7 Affected โ€”
4.0.6 Affected โ€”
4.0.5 Affected โ€”
4.0.4 Affected โ€”
4.0.3 Affected โ€”
4.0.2 Affected โ€”
4.0.0 Affected โ€”
4.0 Affected โ€”
suse SUSE Affected 1 release
VersionStatusFixed in
โ€” Affected โ€”
debian Debian Fixed 5 releases
VersionStatusFixed in
trixie Fixed 4.9.6-1
sid Fixed 4.9.6-1
forky Fixed 4.9.6-1
bullseye Fixed 4.9.6-1
bookworm Fixed 4.9.6-1

References

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.