PT-2015-6384 · Linux+3 · Linux Kernel+3

Publicado

2015-06-07

·

Atualizado

2023-01-20

·

CVE-2015-4003

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions through 4.0.5
Description The issue allows remote attackers to cause a denial of service, resulting in a system crash due to a divide-by-zero error, via a crafted packet. This is caused by a problem in the oz usb handle ep data function in the OZWPAN driver.
Recommendations For Linux kernel versions through 4.0.5, update to a version later than 4.0.5 to resolve the issue. As a temporary workaround, consider restricting access to the OZWPAN driver to minimize the risk of exploitation.

Exploit

Correção

DoS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2015-1564
ALT-PU-2015-1568
CVE-2015-4003
OPENSUSE-SU-2015_1382-1
OPENSUSE-SU-2016_0301-1
USN-2662-1
USN-2663-1
USN-2664-1
USN-2665-1
USN-2666-1
USN-2667-1

Produtos afetados

Alt Linux
Linux Kernel
Suse
Ubuntu