CVE-2015-7566 PUBLISHED

The clie_5_attach function in drivers/usb/serial/visor.c in the Linux kernel through 4.4.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by inserting a USB device that lacks a bulk-out endpoint.

EPSS 0.45% · 63.6th percentile

Risk Scores

EPSS Score
0.45%
63.6th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSlinux-lts-vivid3.19.0-51.58~14.04.1, 3.19.0-51.57~14.04.1, 3.19.0-49.55~14.04.1
Ubuntu:14.04:LTSlinux3.13.0-12.32, 3.13.0-13.33, 3.13.0-14.34
Ubuntu:14.04:LTSlinux-lts-wily0, 4.2.0-18.22~14.04.1, 4.2.0-19.23~14.04.1
Ubuntu:14.04:LTSlinux-lts-utopic3.16.0-57.77~14.04.1, 3.16.0-59.79~14.04.1, 3.16.0-60.80~14.04.1

Timeline

References

Open in Interactive Console →