cbcvebase.
CVE-2015-7566
published 2016-02-08

CVE-2015-7566: The clie_5_attach function in drivers/usb/serial/visor.c in the Linux kernel through 4.4.1 allows physically proximate attackers to cause a denial of service…

medium4.6CVSS 3.0
AVPACLPRNUINSUCNINAH
EXPLOIT
The clie_5_attach function in drivers/usb/serial/visor.c in the Linux kernel through 4.4.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by inserting a USB device that lacks a bulk-out endpoint.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 4.3.3-6 (bookworm)linux 4.3.3-6 (bookworm)
linuxlinux_kernel<= 4.4.1
linuxlinux_kernel>= 0 < 4.3.3-64.3.3-6
linuxlinux_kernel>= 0 < 4.3.3-64.3.3-6
linuxlinux_kernel>= 0 < 4.3.3-64.3.3-6
linuxlinux_kernel>= 0 < 4.3.3-64.3.3-6
linuxlinux_kernel>= 0 < 3.13.0-83.1273.13.0-83.127
novellsuse_linux_enterprise_debuginfo
novellsuse_linux_enterprise_real_time_extension
novellsuse_linux_enterprise_real_time_extension
novellsuse_linux_enterprise_server
novellsuse_linux_enterprise_software_development_kit

CVSS provenance

nvdv3.04.6MEDIUMCVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv6.2MEDIUM