PT-2011-2518 · Linux · Udev

Publicado

2011-01-25

·

Atualizado

2022-06-03

·

CVE-2011-0640

CVSS v2.0

6.9

Média

VetorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions udev (affected versions not specified)
Description The default configuration of udev on Linux does not provide a warning before enabling additional Human Interface Device (HID) functionality over USB. This allows attackers to execute arbitrary programs via crafted USB data, such as keyboard and mouse data sent by malware on a connected smartphone.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

AZL-6516
CVE-2011-0640

Produtos afetados

Udev