CVE-2016-3689 PUBLISHED

The ims_pcu_parse_cdc_data function in drivers/input/misc/ims-pcu.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (system crash) via a USB device without both a master and a slave interface.

EPSS 0.09% · 25.1th percentile

Risk Scores

EPSS Score
0.09%
25.1th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlinux-snapdragon4.4.0-1012.12, 0
Ubuntu:16.04:LTSlinux-raspi24.4.0-1009.10, 4.4.0-1004.5, 4.4.0-1003.4
Ubuntu:14.04:LTSlinux-lts-utopic3.16.0-33.44~14.04.1, 3.16.0-34.45~14.04.1, 3.16.0-34.47~14.04.1
Ubuntu:14.04:LTSlinux0, 3.13.0-45.74, 3.13.0-46.75
Ubuntu:14.04:LTSlinux-lts-xenial4.4.0-21.37~14.04.1, 4.4.0-18.34~14.04.1, 4.4.0-15.31~14.04.1
Ubuntu:16.04:LTSlinux4.4.0-10.25, 4.4.0-11.26, 4.4.0-12.28
Ubuntu:14.04:LTSlinux-lts-wily4.2.0-19.23~14.04.1, 4.2.0-18.22~14.04.1, 0
Ubuntu:14.04:LTSlinux-lts-vivid0, 3.19.0-30.34~14.04.1, 3.19.0-31.36~14.04.1

Timeline

References

Open in Interactive Console →