Lucene search

K
cveMitreCVE-2015-7833
HistoryOct 19, 2015 - 10:59 a.m.

CVE-2015-7833

2015-10-1910:59:10
CWE-17
mitre
web.nvd.nist.gov
132
information security
cve-2015-7833
linux kernel
denial of service
usbvision driver
red hat enterprise linux

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

AI Score

5.2

Confidence

High

EPSS

0.002

Percentile

57.2%

The usbvision driver in the Linux kernel package 3.10.0-123.20.1.el7 through 3.10.0-229.14.1.el7 in Red Hat Enterprise Linux (RHEL) 7.1 allows physically proximate attackers to cause a denial of service (panic) via a nonzero bInterfaceNumber value in a USB device descriptor.

Affected configurations

Nvd
Node
novellsuse_linux_enterprise_real_time_extensionMatch12sp1
Node
redhatenterprise_linuxMatch7.1
VendorProductVersionCPE
novellsuse_linux_enterprise_real_time_extension12cpe:2.3:o:novell:suse_linux_enterprise_real_time_extension:12:sp1:*:*:*:*:*:*
redhatenterprise_linux7.1cpe:2.3:o:redhat:enterprise_linux:7.1:*:*:*:*:*:*:*

References

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

AI Score

5.2

Confidence

High

EPSS

0.002

Percentile

57.2%