ZeroHour

CVE-2019-15216

PoC
CVSS 3.1
4.6 medium
EPSS
<1%p51
Published
()
Modified
Description

An issue was discovered in the Linux kernel before 5.0.14. There is a NULL pointer dereference caused by a malicious USB device in the drivers/usb/misc/yurex.c driver.

Vendors
linuxnetappcanonicaldebianopensuse
Products
linux kernel, h410c firmware, active iq unified manager, data availability services, solidfire \& hci management node, solidfire baseboard management controller, ubuntu linux, debian linux, leap
Weakness
CWE-476
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.