Linux · Linux Kernel · CVE-2015-5257
**Name of the Vulnerable Software and Affected Versions**
Linux kernel versions prior to 4.2.4
**Description**
The issue allows physically proximate attackers to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via a crafted USB device. This is due to a flaw in the `drivers/usb/serial/whiteheat.c` file.
**Recommendations**
For Linux kernel versions prior to 4.2.4, update to version 4.2.4 or later to resolve the issue. As a temporary workaround, consider restricting access to USB devices to minimize the risk of exploitation.