CVE-2015-7566

MEDIUM

Linux kernel <4.4.1 - DoS

Title source: llm

Description

The clie_5_attach function in drivers/usb/serial/visor.c in the Linux kernel through 4.4.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by inserting a USB device that lacks a bulk-out endpoint.

Exploits (1)

exploitdb WORKING POC
by OpenSource Security · textdoslinux
https://www.exploit-db.com/exploits/39540

References (27)

... and 7 more

Scores

CVSS v3 4.6
EPSS 0.0045
EPSS Percentile 63.5%
Attack Vector PHYSICAL
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Classification

Status draft

Affected Products (7)

novell/suse_linux_enterprise_software_development_kit
novell/suse_linux_enterprise_debuginfo
novell/suse_linux_enterprise_real_time_extension
novell/suse_linux_enterprise_real_time_extension
novell/suse_linux_enterprise_server
novell/suse_linux_enterprise_server
linux/linux_kernel < 4.4.1

Timeline

Published Feb 08, 2016
Tracked Since Feb 18, 2026