cbcvebase.
CVE-2015-4002
published 2015-06-07

CVE-2015-4002: drivers/staging/ozwpan/ozusbsvc1.c in the OZWPAN driver in the Linux kernel through 4.0.5 does not ensure that certain length values are sufficiently large…

PriorityP348critical9CVSS 2.0
AVNACLAuNCPIPAC
EPSS
8.34%
94.3th percentile
drivers/staging/ozwpan/ozusbsvc1.c in the OZWPAN driver in the Linux kernel through 4.0.5 does not ensure that certain length values are sufficiently large, which allows remote attackers to cause a denial of service (system crash or large loop) or possibly execute arbitrary code via a crafted packet, related to the (1) oz_usb_rx and (2) oz_usb_handle_ep_data functions.

Affected

16 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
debianlinux< linux 4.1.3-1 (bookworm)linux 4.1.3-1 (bookworm)
linuxlinux_kernel< 3.4.1093.4.109
linuxlinux_kernel>= 0 < 4.1.3-14.1.3-1
linuxlinux_kernel>= 0 < 4.1.3-14.1.3-1
linuxlinux_kernel>= 0 < 4.1.3-14.1.3-1
linuxlinux_kernel>= 0 < 4.1.3-14.1.3-1
linuxlinux_kernel>= 0 < 3.13.0-57.953.13.0-57.95
linuxlinux_kernel>= 3.11 < 3.12.453.12.45
linuxlinux_kernel>= 3.13 < 3.14.453.14.45
linuxlinux_kernel>= 3.15 < 3.16.353.16.35
linuxlinux_kernel>= 3.17 < 3.18.183.18.18
linuxlinux_kernel>= 3.19 < 4.0.64.0.6
linuxlinux_kernel>= 3.5 < 3.10.813.10.81
opensuseopensuse

CVSS provenance

nvdv2.09.0CRITICALAV:N/AC:L/Au:N/C:P/I:P/A:C
osv9.0CRITICAL
vendor_debian9.0LOW
vendor_redhat9.0CRITICAL
vendor_ubuntu6.9MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.