MEDIUM · 4.9

CVE-2015-7833

The usbvision driver in the Linux kernel package 3.10.0-123.20.1.el7 through 3.10.0-229.14.1.el7 in Red Hat Enterprise Linux (RHEL) 7.1 allows physically proximate attackers to cause a denial of servi...

Vulnerability Description

The usbvision driver in the Linux kernel package 3.10.0-123.20.1.el7 through 3.10.0-229.14.1.el7 in Red Hat Enterprise Linux (RHEL) 7.1 allows physically proximate attackers to cause a denial of service (panic) via a nonzero bInterfaceNumber value in a USB device descriptor.

CVSS Score

4.9

MEDIUM

AV:L/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
NovellSuse Linux Enterprise Real Time Extension12
RedhatEnterprise Linux7.1

Related Weaknesses (CWE)

References

FAQ

What is CVE-2015-7833?

CVE-2015-7833 is a vulnerability with a CVSS score of 4.9 (MEDIUM). The usbvision driver in the Linux kernel package 3.10.0-123.20.1.el7 through 3.10.0-229.14.1.el7 in Red Hat Enterprise Linux (RHEL) 7.1 allows physically proximate attackers to cause a denial of servi...

How severe is CVE-2015-7833?

CVE-2015-7833 has been rated MEDIUM with a CVSS base score of 4.9/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2015-7833?

Check the references section above for vendor advisories and patch information. Affected products include: Novell Suse Linux Enterprise Real Time Extension, Redhat Enterprise Linux.