PT-2016-3814 · Linux+3 · Linux Kernel+3

Hendrik Schwartke

+2

·

Published

2016-01-19

·

Updated

2018-10-09

·

CVE-2015-7566

CVSS v2.0

4.9

Medium

VectorAV:L/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 4.4.1
Description The issue allows physically proximate attackers to cause a denial of service, potentially leading to a system crash, by inserting a USB device that lacks a bulk-out endpoint. This is due to a NULL pointer dereference in the clie 5 attach function.
Recommendations For Linux kernel versions prior to 4.4.1, update to version 4.4.1 or later to resolve the issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

ALT-PU-2016-1137
ALT-PU-2016-1485
CVE-2015-7566
DLA-412-1
DSA-3448-1
DSA-3503-1
OPENSUSE-SU-2016_2144-1
SUSE-SU-2016:1203-1
SUSE-SU-2016:1672-1
SUSE-SU-2016:1707-1
SUSE-SU-2016:1764-1
SUSE-SU-2016:2074-1
SUSE-SU-2016_1672-1
USN-2929-1
USN-2929-2
USN-2930-1
USN-2930-2
USN-2930-3
USN-2932-1
USN-2948-1
USN-2948-2
USN-2967-1
USN-2967-2

Affected Products

Alt Linux
Linux Kernel
Suse
Ubuntu