7.2

CVE-2015-8816

The hub_activate function in drivers/usb/core/hub.c in the Linux kernel before 4.3.5 does not properly maintain a hub-interface data structure, which allows physically proximate attackers to cause a denial of service (invalid memory access and system crash) or possibly have unspecified other impact by unplugging a USB hub device.

Data is provided by the National Vulnerability Database (NVD)
NovellSuse Linux Enterprise Debuginfo Version11 Updatesp4
NovellSuse Linux Enterprise Server Version11 Updateextra
NovellSuse Linux Enterprise Server Version11 Updatesp4
LinuxLinux Kernel Version >= 2.6.28 < 3.2.76
LinuxLinux Kernel Version >= 3.3 < 3.4.113
LinuxLinux Kernel Version >= 3.5 < 3.10.103
LinuxLinux Kernel Version >= 3.11 < 3.12.58
LinuxLinux Kernel Version >= 3.13 < 3.14.76
LinuxLinux Kernel Version >= 3.15 < 3.16.35
LinuxLinux Kernel Version >= 3.17 < 3.18.27
LinuxLinux Kernel Version >= 3.19 < 4.1.17
LinuxLinux Kernel Version >= 4.2 < 4.3.5
SuseLinux Enterprise Live Patching Version12 Update-
SuseLinux Enterprise Server Version12 SwEditionltss
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.08% 0.234
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.8 0.9 5.9
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
http://www.securityfocus.com/bid/83363
Third Party Advisory
VDB Entry