Lucene search

K
cvelistRedhatCVELIST:CVE-2017-15102
HistoryNov 15, 2017 - 9:00 p.m.

CVE-2017-15102

2017-11-1521:00:00
redhat
www.cve.org
1

6.4 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

The tower_probe function in drivers/usb/misc/legousbtower.c in the Linux kernel before 4.8.1 allows local users (who are physically proximate for inserting a crafted USB device) to gain privileges by leveraging a write-what-where condition that occurs after a race condition and a NULL pointer dereference.

CNA Affected

[
  {
    "product": "Linux kernel through version 4.9-rc1",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Linux kernel through version 4.9-rc1"
      }
    ]
  }
]

6.4 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%