Bugzilla – Bug 1146302
VUL-1: CVE-2016-10907: kernel-source: out of bounds write in the function ad5755_parse_dt
Last modified: 2019-08-20 09:28:43 UTC
CVE-2016-10907 An issue was discovered in drivers/iio/dac/ad5755.c in the Linux kernel before 4.8.6. There is an out of bounds write in the function ad5755_parse_dt. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-10907 http://people.canonical.com/~ubuntu-security/cve/2016/CVE-2016-10907.html http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-10907 https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=9d47964bfd471f0dd4c89f28556aec68bffa0020 https://cdn.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.8.6
The vulnerable function introduced in version 4.8. Our version 4.12 already ships the fix and the older version that we ship are not affected.