Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-3951

Опубликовано: 02 мая 2016
Источник: debian

Описание

Double free vulnerability in drivers/net/usb/cdc_ncm.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (system crash) or possibly have unspecified other impact by inserting a USB device with an invalid USB descriptor.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed4.5.1-1package

Примечания

  • https://git.kernel.org/linus/4d06dd537f95683aba3651098ae288b7cbff8274 (v4.5)

  • https://git.kernel.org/linus/1666984c8625b3db19a9abc298931d35ab7bc64b (v4.5)

  • https://www.spinics.net/lists/netdev/msg367669.html

Связанные уязвимости

CVSS3: 4.6
ubuntu
около 9 лет назад

Double free vulnerability in drivers/net/usb/cdc_ncm.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (system crash) or possibly have unspecified other impact by inserting a USB device with an invalid USB descriptor.

redhat
больше 9 лет назад

Double free vulnerability in drivers/net/usb/cdc_ncm.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (system crash) or possibly have unspecified other impact by inserting a USB device with an invalid USB descriptor.

CVSS3: 4.6
nvd
около 9 лет назад

Double free vulnerability in drivers/net/usb/cdc_ncm.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (system crash) or possibly have unspecified other impact by inserting a USB device with an invalid USB descriptor.

CVSS3: 4.6
github
около 3 лет назад

Double free vulnerability in drivers/net/usb/cdc_ncm.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (system crash) or possibly have unspecified other impact by inserting a USB device with an invalid USB descriptor.

suse-cvrf
около 9 лет назад

Security update for the Linux Kernel